diff --git a/prowler/providers/aws/services/kms/kms_service.py b/prowler/providers/aws/services/kms/kms_service.py index 684022bc..410691d8 100644 --- a/prowler/providers/aws/services/kms/kms_service.py +++ b/prowler/providers/aws/services/kms/kms_service.py @@ -73,7 +73,7 @@ class KMS: logger.info("KMS - Get Key Rotation Status...") try: for key in self.keys: - if "EXTERNAL" not in key.origin: + if "EXTERNAL" not in key.origin and "AWS" not in key.manager: regional_client = self.regional_clients[key.region] key.rotation_enabled = regional_client.get_key_rotation_status( KeyId=key.id