Files
prowler/checks/check110
Toni de la Fuente a2806ad86b populated checks
2018-03-23 10:05:20 -04:00

21 lines
716 B
Plaintext

CHECK_ID_check110=""
CHECK_TITLE_check110=""
CHECK_SCORED_check110=""
CHECK_TYPE_check110=""
CHECK_ALTERNATE_check110="check110"
check110(){
# "Ensure IAM password policy prevents password reuse: 24 or greater (Scored)"
COMMAND110=$($AWSCLI iam get-account-password-policy $PROFILE_OPT --region $REGION --query 'PasswordPolicy.PasswordReusePrevention' --output text 2> /dev/null)
textTitle "$ID110" "$TITLE110" "SCORED" "LEVEL1"
if [[ $COMMAND110 ]];then
if [[ $COMMAND110 -gt "23" ]];then
textOK "Password Policy limits reuse"
else
textWarn "Password Policy has weak reuse requirement (lower than 24)"
fi
else
textWarn "Password Policy missing reuse requirement"
fi
}