From dd78734819b37a581bf2a16a42df6a17f0faa99b Mon Sep 17 00:00:00 2001 From: Viren Nadkarni Date: Wed, 20 Sep 2023 09:43:45 +0530 Subject: [PATCH] Update note on IAM enforcement --- content/en/references/cross-account-access.md | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/content/en/references/cross-account-access.md b/content/en/references/cross-account-access.md index 0ffa247708..d3d592571d 100644 --- a/content/en/references/cross-account-access.md +++ b/content/en/references/cross-account-access.md @@ -23,8 +23,8 @@ Resources that can be accessed across multiple accounts are always identified by The full list of resources and operations that allow cross-account access are listed below. {{< alert title="Note">}} -IAM currently does not enforce cross-account access. -Any ACLs, identity-based or resource-based policy attached to these operations or resources will be ignored. +LocalStack does not enforce IAM for cross-account access by default. +Use the `ENFORCE_IAM` [configuration]({{< ref "configuration#lambda" >}}) option to enable it. {{< /alert >}} ### EC2 VPCs