aws iam list-access-keys --user-name admin
- If an AWS Account is a member of AWS Organization, we can run the command to retrieve root's email
aws organizations describe-organization
aws iam get-group --group-game $GROUP_NAME
- Set Acccess Key active/inactive
# Set inactive
aws iam update-access-key --access-key-id $ACCESS_KEY_VALUE --status Inactive
# Set active
aws iam update-access-key --access-key-id $ACCESS_KEY_VALUE --status Active
aws iam delete-access-key --access-key-id $ACCESS_KEY_VALUE
- Create a long-term Access Key
aws iam create-access-key --user-name $USERNAME
- To generate a Session Key
aws sts get-session-token
- Check if user has MFA enabled
aws iam list-mfa-devices --user-name $USERNAME
aws iam get-policy --policy-arn $POLICY_ARN
aws s3api get-buket-policy --bucket $BUCKET_NAME