aws-cloudformation / aws-cloudformation/cloudformation-coverage-roadmap

AWS::Cognito::UserPool - Granular control over advanced security options

Open
#2,048 0 comments 0 reactions 0 assignees View on GitHub
enhancement
Dominant language
No language data
Stars
1.1k
Forks
62
PR merge metrics
No merged PRs in 30d

Description

### Name of the resource

AWS::Cognito::UserPool

### Resource name

_No response_

### Description

AWS::Cognito::UserPool Provided the UserPoolAddOns parameter with the option to configure AdvancedSecurityMode. However the options are lacking in customization as they amount to off, medium and high. Options to configure the same configurations as are available in the ui would be useful. For example I can not configure automatic risk responses or ip restrictions at all beyond the defaults.
![image](https://github.com/aws-cloudformation/cloudformation-coverage-roadmap/assets/70229357/01384bac-0367-4a3b-89a5-e8fdb62dc078)

### Other Details

_No response_

Contributor guide

Open the contributing guide

Research direction

Start with the AWS::Cognito::UserPool UserPoolAddOns parameter and compare its AdvancedSecurityMode options with the controls shown in the linked Cognito UI image. Identify the automatic risk responses and IP restrictions that need CloudFormation representation; done means those settings can be configured through the resource rather than only through UI defaults.

Written by the indexing model from the issue text.

Assessment

Tech stack
aws
Domain
authentication, cloud, security
Issue type
Feature
Difficulty
5/5
Estimated time
Over a week
Activity status
Stale
Clarity
Mostly clear
Newbie friendliness
25/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.