diff --git a/README.md b/README.md index 670b3766..529dd007 100644 --- a/README.md +++ b/README.md @@ -548,3 +548,5 @@ aws iam add-user-to-group --user-name prowler --group-name SecurityAudit aws iam create-access-key --user-name prowler unset ACCOUNT_ID AWS_DEFAULT_PROFILE ``` + +The `aws iam create-access-key` command will output the secret access key and the key id; keep these somewhere safe, and add them to ~/.aws/credentials with an appropriate profile name to use them with prowler. This is the only time they secret key will be shown. If you loose it, you will need to generate a replacement.