Skip to content
This repository has been archived by the owner on Mar 13, 2023. It is now read-only.

AwsSolutions-IAM4 #3

Open
jblukach opened this issue Nov 17, 2022 · 0 comments
Open

AwsSolutions-IAM4 #3

jblukach opened this issue Nov 17, 2022 · 0 comments

Comments

@jblukach
Copy link
Member

[Error at /MatchmetaStack/Custom::CDKBucketDeployment8693BB64968944B69AAFB0CC9EB8756C/ServiceRole/Resource] AwsSolutions-IAM4[Policy::arn:AWS::Partition:iam::aws:policy/service-role/AWSLambdaBasicExecutionRole]: The IAM user, role, or group uses AWS managed policies. An AWS managed policy is a standalone policy that is created and administered by AWS. Currently, many AWS managed policies do not restrict resource scope. Replace AWS managed policies with system specific (customer) managed policies.This is a granular rule that returns individual findings that can be suppressed with 'appliesTo'. The findings are in the format 'Policy::' for AWS managed policies. Example: appliesTo: ['Policy::arn:AWS::Partition:iam::aws:policy/foo'].

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Development

No branches or pull requests

1 participant