hackforla / devops-security

Management of Hack for L.A.'s AWS IAM resources
https://github.com/orgs/hackforla/projects/73/views/4
MIT License
0 stars 12 forks source link

Analyse existing users and determine duplicate user accounts Decision record #63

Open sudhara opened 3 weeks ago

sudhara commented 3 weeks ago

Overview

We need to review the existing users that have not logged in, in a while and come up with a recommendation on what to do currently and ongoing.

Action Items

Review and Document

Resources

ale210 commented 1 day ago

here is a list of accounts that have not had logins more than 180 days ago:

bonnie_ops - charles_maduka - jbubar - npang4 - testiamuser - CivicTechJobs 486 days ago VRMS 482 days ago user-manger 287 days ago bonnie_hfla 280 days ago ethan_strominger 280 days ago Judson 270 days ago Jason.ebueng@gmail.com 237 days ago shikhayadav 232 days ago sidharth20 223 days ago abdulraheem_hfla_ops 211 days ago awlFCCamp 210 days ago shinjonathan 205 days ago abbyz123 202 days ago samuelusc 202 days ago Davon_W 202 days ago chelseyb 202 days ago Tyson_Miller 195 days ago robin_glover 195 days ago shikha0428 192 days ago kazushi_hfla_ops 181 days ago

sudhara commented 1 day ago

@ale210 to complete the Issue, problem statement, Recommendation documentation above

ExperimentsInHonesty commented 1 day ago

Exceptions

Please do not delete any logins with my username (bonnie). I will log in again to the accounts I have access to (during a meeting) and identify what I use the account for. Just because I have not logged in, in a while, doesn't mean I should not be doing so. My logins are meant to be an administrative override.

ExperimentsInHonesty commented 1 day ago

@chelseybeck do you need this account? chelseyb 202 days ago

ExperimentsInHonesty commented 1 day ago

Exceptions to investigate

The following accounts might be needed to get projects off non IaC deployments of incubator or even in unique instances (e.g. Home Unite Us)

ExperimentsInHonesty commented 1 day ago

@ale210 I made updates to the template (top part) of the issue, and left some comments for you.

ExperimentsInHonesty commented 18 hours ago

@ale210 Please check to see if any of the users use this email address aws-huu@hackforla.org and add a link to your comment with the results to the next agenda. I will need that info for a spreadsheet I am working on. I am adding the link here so I can find it again when I have your answer spreadsheet

The email is in this 1password vault which only Ernie and I have access to AWS- Recovery vault Recovery for Projects AWS accounts