aws / aws/aws-lambda-roadmap

Block public access for functions [AWS Organizations]

Open
#35 2 comments 7 reactions 0 assignees View on GitHub
Lambda PM request Lambda/Security
Dominant language
No language data
Stars
196
Forks
5
PR merge metrics
No merged PRs in 30d

Description

**Note**
> * Please vote on this issue by adding a 👍 reaction to the original issue to help the community and maintainers prioritize this request
> * Please do not leave "+1" or "me too" comments, they generate extra noise for issue followers and do * not help prioritize the request
> If you are interested in providing additional feedback, please leave a comment

**Description**
We are exploring supporting Organization level policies to specify whether to block the attachment of new policies that would allow public access and/or restrict access to functions that are currently publicly accessible.

**Additional context**
1. What level of granularity do you need in an Organization level policy, for example, block access for all resources except this resource type?

Contributor guide

Open the contributing guide

Research direction

The issue concerns AWS Organizations policies governing public access to Lambda functions, but it names no repository files, tests, or entry points. Start by reviewing the requested policy granularity and the two proposed behaviors: blocking new public-access policies and restricting currently public functions. Done would require a defined, agreed organization-level policy design.

Written by the indexing model from the issue text.

Assessment

Tech stack
aws
Domain
authorization, cloud, security
Issue type
Feature
Difficulty
5/5
Estimated time
Over a week
Activity status
Stale
Clarity
Needs clarification
Newbie friendliness
25/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.