iam-mfa-enforcement-cannot-be-fully-automated

Status: IN

IAM MFA enforcement has structural automation gaps — FIDO security keys can only be configured via the console and root MFA can only be configured while signed in as root — preventing fully automated MFA lifecycle management across an organization.

JSON