When the maximum retry attempts in the RAM user password policy meets the specified parameter requirements, it is considered "compliant".
Scenarios
The administrator sets a password policy for RAM users, limiting the maximum retry attempts to 5 times to ensure account security and prevent unauthorized access due to brute-force attack attempts.
Risk level
Default risk level: high.
You can change the risk level as needed.
Detection logic
When the maximum retry attempts in the RAM user password policy meets the specified parameter requirements, it is considered compliant. The default detection is set to a maximum of 5 retry attempts.
Rule details
Parameter | Description |
Rule name | Maximum retry attempts in RAM user password policy meets requirements |
Rule identifier | |
Automatic remediation | Not supported |
Trigger type | Periodic: Every 24 hours |
Supported resource types | ACS::::Account |
Input parameters | maxLoginAttemps (Default value: 5) |
Remediation guidance
For more information, see Set a password policy for RAM users.