Skip to content

Inconsistency with securityhub rules #2600

Answered by jfagoagas
NMuee asked this question in Q&A
Discussion options

You must be logged in to vote

Hi @NMuee,

  1. The check iam_aws_attached_policy_no_administrative_privileges verifies if any IAM AWS-Managed policies that allow full "*:*" administrative privileges are not attached. So, if you have a user with that policy attached Prowler will raise a FAIL.

  2. The check sns_topics_kms_encryption_at_rest_enabled verifies if your topic has a KMS Key configured. Could you share your SNS topic configuration to verify it? With the latest version of Prowler this check works as expected, see the image below.

Thanks for using Prowler 🚀

Replies: 1 comment 4 replies

Comment options

You must be logged in to vote
4 replies
@NMuee
Comment options

@jfagoagas
Comment options

@NMuee
Comment options

@jfagoagas
Comment options

Answer selected by jfagoagas
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
2 participants