iam-external-access-analyzer-enabled - AWS Config

iam-external-access-analyzer-enabled

Checks if an IAM Access Analyzer for external access is activated in your account per region. The rule is NON_COMPLIANT if there are no analyzers for external access in the region or if the 'status' attribute is not set to 'ACTIVE'.

Identifier: IAM_EXTERNAL_ACCESS_ANALYZER_ENABLED

Resource Types: AWS::::Account

Trigger type: Periodic

AWS Region: All supported AWS regions except US ISO West, China (Beijing), US ISO East, Asia Pacific (Malaysia), US ISOB East, AWS GovCloud (US-East), AWS GovCloud (US-West), Israel (Tel Aviv), Canada West (Calgary), China (Ningxia) Region

Parameters:

None

AWS CloudFormation template

To create AWS Config managed rules with AWS CloudFormation templates, see Creating AWS Config Managed Rules With AWS CloudFormation Templates.