AWS IAM policy to let users manage their own MFA
If you’re an AWS administrator you know that managing web console security is pretty tough unless you know what you want and you know what you’re doing. So if what you want is let each AWS user manage their own MFA device configuration without you and force them to have MFA active to use the web console, here is your solution.
TL;DR
Create one or more groups with your web users Create a new policy using this JSON Attach the policy to the group(s) How does it work?
[Read More]