IAM policy grants 'AssumeRole' permission to all services
ID |
aws_iam_policy_assume_role |
Severity |
low |
Vendor |
AWS |
Resource |
IAM |
Tags |
reachable |
Description
IAM policy grants AssumeRole
permission to all services. It is more secure grant permissions gradually as necessary.
To fix it, you must configure the policy with the AssumeRole
only for necessary resources.
Learn more about this topic at AWS Assume role.