This template creates a risk configuration attachment for a user pool in Amazon Cognito. It sets the risk configurations for account takeover, compromised credentials, and risk exceptions. The risk configurations include actions to be taken, notification configurations, and IP range lists. As input the template requires an existing User Pool and Client Id, as well as an SES Identity Arn for sending email notifications

UserPoolRiskConfiguration
AWS::Cognito::UserPoolRiskConfigurationAttachment


AccountTakeoverRiskConfiguration
Actions *
HighAction
LowAction
MediumAction
NotifyConfiguration
BlockEmail
MfaEmail
NoActionEmail
CompromisedCredentialsRiskConfiguration
Actions *

EventFilter

RiskExceptionConfiguration

BlockedIPRangeList

SkippedIPRangeList

CloudFormation Template

Share Template