Critical
IAM
MFA should be enabled for the root user
CIS
Description
Confirms that virtual MFA is enabled for the root user.
Remediation
To enable Virtual MFA for the root user, follow these steps:
Steps
- Sign in to the AWS Management Console using your root user credentials.
- Navigate to the IAM dashboard.
- In the IAM dashboard, go to the 'Security Status' section.
- Under 'Activate MFA on your root account', click on 'Manage MFA'.
- Select 'A virtual MFA device' and click 'Next Step'.
- Follow the instructions to set up a virtual MFA device.
- Once the virtual MFA device is successfully associated with your root account, verify it works.
Compliance
CIS