Low EKS Regional

EKS identity provider configurations should be tagged

Description

Flags Amazon EKS identity provider configurations that have no user-defined tags. Tags help associate IdP bindings with their owning team and downstream RBAC group mapping; untagged configurations are operationally opaque.


Remediation

Apply at least one user-defined tag to every EKS identity provider configuration.

Steps

  1. Open the Amazon EKS console and select the cluster.
  2. Choose Access, then Identity provider configurations.
  3. Select the configuration and choose Manage tags.
  4. Add at least one tag with a non-aws: prefixed key.
  5. Save the changes.