{"id":15156450,"url":"https://github.com/terraform-ibm-modules/terraform-ibm-iam-account-settings","last_synced_at":"2026-04-18T02:17:19.963Z","repository":{"id":153721254,"uuid":"617048416","full_name":"terraform-ibm-modules/terraform-ibm-iam-account-settings","owner":"terraform-ibm-modules","description":"Configures standard IAM parameters and account settings","archived":false,"fork":false,"pushed_at":"2026-01-03T02:07:12.000Z","size":855,"stargazers_count":1,"open_issues_count":0,"forks_count":3,"subscribers_count":14,"default_branch":"main","last_synced_at":"2026-01-09T10:58:31.243Z","etag":null,"topics":["core-team","graduated","iam-account","ibm-cloud","supported","terraform","terraform-module"],"latest_commit_sha":null,"homepage":"","language":"HCL","has_issues":true,"has_wiki":null,"has_pages":null,"mirror_url":null,"source_name":null,"license":"apache-2.0","status":null,"scm":"git","pull_requests_enabled":true,"icon_url":"https://github.com/terraform-ibm-modules.png","metadata":{"files":{"readme":"README.md","changelog":null,"contributing":null,"funding":null,"license":"LICENSE","code_of_conduct":null,"threat_model":null,"audit":null,"citation":null,"codeowners":".github/CODEOWNERS","security":null,"support":null,"governance":null,"roadmap":null,"authors":null,"dei":null,"publiccode":null,"codemeta":null,"zenodo":null,"notice":null,"maintainers":null,"copyright":null,"agents":null,"dco":null,"cla":null}},"created_at":"2023-03-21T15:45:29.000Z","updated_at":"2026-01-09T10:55:55.000Z","dependencies_parsed_at":"2024-03-01T00:22:19.133Z","dependency_job_id":"4658a605-9ef8-4a80-8810-26cc59c8ad54","html_url":"https://github.com/terraform-ibm-modules/terraform-ibm-iam-account-settings","commit_stats":{"total_commits":340,"total_committers":13,"mean_commits":"26.153846153846153","dds":"0.12352941176470589","last_synced_commit":"dc4584f6220423fe0034f6c2bf9ec13b8c910f34"},"previous_names":[],"tags_count":60,"template":false,"template_full_name":"terraform-ibm-modules/terraform-ibm-module-template","purl":"pkg:github/terraform-ibm-modules/terraform-ibm-iam-account-settings","repository_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/terraform-ibm-modules%2Fterraform-ibm-iam-account-settings","tags_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/terraform-ibm-modules%2Fterraform-ibm-iam-account-settings/tags","releases_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/terraform-ibm-modules%2Fterraform-ibm-iam-account-settings/releases","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/terraform-ibm-modules%2Fterraform-ibm-iam-account-settings/manifests","owner_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners/terraform-ibm-modules","download_url":"https://codeload.github.com/terraform-ibm-modules/terraform-ibm-iam-account-settings/tar.gz/refs/heads/main","sbom_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/terraform-ibm-modules%2Fterraform-ibm-iam-account-settings/sbom","scorecard":null,"host":{"name":"GitHub","url":"https://github.com","kind":"github","repositories_count":286080680,"owners_count":28338990,"icon_url":"https://github.com/github.png","version":null,"created_at":"2022-05-30T11:31:42.601Z","updated_at":"2026-01-12T12:22:26.515Z","status":"ssl_error","status_checked_at":"2026-01-12T12:22:10.856Z","response_time":98,"last_error":"SSL_connect returned=1 errno=0 peeraddr=140.82.121.6:443 state=error: unexpected eof while reading","robots_txt_status":"success","robots_txt_updated_at":"2025-07-24T06:49:26.215Z","robots_txt_url":"https://github.com/robots.txt","online":false,"can_crawl_api":true,"host_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub","repositories_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories","repository_names_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repository_names","owners_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners"}},"keywords":["core-team","graduated","iam-account","ibm-cloud","supported","terraform","terraform-module"],"created_at":"2024-09-26T19:21:40.212Z","updated_at":"2026-04-18T02:17:19.954Z","avatar_url":"https://github.com/terraform-ibm-modules.png","language":"HCL","funding_links":[],"categories":[],"sub_categories":[],"readme":"# IAM account settings module\n\n[![Graduated (Supported)](https://img.shields.io/badge/Status-Graduated%20(Supported)-brightgreen)](https://terraform-ibm-modules.github.io/documentation/#/badge-status)\n[![semantic-release](https://img.shields.io/badge/%20%20%F0%9F%93%A6%F0%9F%9A%80-semantic--release-e10079.svg)](https://github.com/semantic-release/semantic-release)\n[![pre-commit](https://img.shields.io/badge/pre--commit-enabled-brightgreen?logo=pre-commit\u0026logoColor=white)](https://github.com/pre-commit/pre-commit)\n[![latest release](https://img.shields.io/github/v/release/terraform-ibm-modules/terraform-ibm-iam-account-settings?logo=GitHub\u0026sort=semver)](https://github.com/terraform-ibm-modules/terraform-ibm-iam-account-settings/releases/latest)\n[![Renovate enabled](https://img.shields.io/badge/renovate-enabled-brightgreen.svg)](https://renovatebot.com/)\n[![Terraform Registry](https://img.shields.io/badge/terraform-registry-623CE4?logo=terraform)](https://registry.terraform.io/modules/terraform-ibm-modules/iam-account-settings/ibm/latest)\n\nThis module configures standard IAM account settings with the recommended values, in which the default values are\naligned with FSCloud requirements, and exports the values as outputs.\n\nThe module handles the following account settings:\n\n- Multifactor authentication (None - Federated Users - All - Email/TOPT/U2F based)\n- User specific Multifactor authentication (None - Federated Users - All - Email/TOPT/U2F based)\n- Restrict API key creation (on - off)\n- Restrict service ID creation (on - off)\n- Session activity timeout (seconds)\n- Session inactivity timeout (seconds)\n- Access token expiration (seconds)\n- Refresh token expiration (seconds)\n- Restrict IP address access (off/Any Allowed - on/Allow only specified IP subnets or IP addresses). Two control modes\n  are supported:\n    - Monitor: traffic that originates outside the specified allowed IP addresses is allowed but logged by audit events\n      that are sent to SIEM and Activity Tracker\n    - Restrict: traffic that originates outside the specified allowed IP addresses is blocked\n- Global shell settings (on - off)\n- Public access group (on - off)\n\nThe module supports creating and updating settings that are applied with the `terraform apply` command. With objects\naffected by the `destroy` command, the module preserves the most recent setting and doesn't change objects that are\nconfigured outside of Terraform's scope.\n\n## Current limitations:\nThe module currently does not support setting the following FSCloud requirements using the IBM provider:\n\n- Check whether user list visibility restrictions are configured in IAM settings for the account owner\n- Check whether the Financial Services Validated setting is enabled in account settings\n\nTracking issue with IBM provider -\u003e \u003chttps://github.com/IBM-Cloud/terraform-provider-ibm/issues/4204\u003e\n\nIf you need to manage these FSCloud requirements via Terraform, please see the [experimental submodule](https://github.com/terraform-ibm-modules/terraform-ibm-iam-account-settings/tree/main/modules/experimental) which uses the RestAPI provider to manage these settings.\n\n\u003c!-- Below content is automatically populated via pre-commit hook --\u003e\n\u003c!-- BEGIN OVERVIEW HOOK --\u003e\n## Overview\n\u003cul\u003e\n  \u003cli\u003e\u003ca href=\"#terraform-ibm-iam-account-settings\"\u003eterraform-ibm-iam-account-settings\u003c/a\u003e\u003c/li\u003e\n  \u003cli\u003e\u003ca href=\"./modules\"\u003eSubmodules\u003c/a\u003e\n    \u003cul\u003e\n      \u003cli\u003e\u003ca href=\"./modules/account-settings-template\"\u003eaccount-settings-template\u003c/a\u003e\u003c/li\u003e\n      \u003cli\u003e\u003ca href=\"./modules/experimental\"\u003eexperimental\u003c/a\u003e\u003c/li\u003e\n    \u003c/ul\u003e\n  \u003c/li\u003e\n  \u003cli\u003e\u003ca href=\"./examples\"\u003eExamples\u003c/a\u003e\n    \u003cul\u003e\n      \u003cli\u003e\n        \u003ca href=\"./examples/account-settings-template\"\u003eAccount Settings Template example\u003c/a\u003e\n        \u003ca href=\"https://cloud.ibm.com/schematics/workspaces/create?workspace_name=iam-account-settings-account-settings-template-example\u0026repository=https://github.com/terraform-ibm-modules/terraform-ibm-iam-account-settings/tree/main/examples/account-settings-template\"\u003e\u003cimg src=\"https://img.shields.io/badge/Deploy%20with%20IBM%20Cloud%20Schematics-0f62fe?style=flat\u0026logo=ibm\u0026logoColor=white\u0026labelColor=0f62fe\" alt=\"Deploy with IBM Cloud Schematics\" style=\"height: 16px; vertical-align: text-bottom; margin-left: 5px;\"\u003e\u003c/a\u003e\n      \u003c/li\u003e\n      \u003cli\u003e\n        \u003ca href=\"./examples/custom\"\u003eAccount Custom Settings example\u003c/a\u003e\n        \u003ca href=\"https://cloud.ibm.com/schematics/workspaces/create?workspace_name=iam-account-settings-custom-example\u0026repository=https://github.com/terraform-ibm-modules/terraform-ibm-iam-account-settings/tree/main/examples/custom\"\u003e\u003cimg src=\"https://img.shields.io/badge/Deploy%20with%20IBM%20Cloud%20Schematics-0f62fe?style=flat\u0026logo=ibm\u0026logoColor=white\u0026labelColor=0f62fe\" alt=\"Deploy with IBM Cloud Schematics\" style=\"height: 16px; vertical-align: text-bottom; margin-left: 5px;\"\u003e\u003c/a\u003e\n      \u003c/li\u003e\n      \u003cli\u003e\n        \u003ca href=\"./examples/default\"\u003eDefault Example\u003c/a\u003e\n        \u003ca href=\"https://cloud.ibm.com/schematics/workspaces/create?workspace_name=iam-account-settings-default-example\u0026repository=https://github.com/terraform-ibm-modules/terraform-ibm-iam-account-settings/tree/main/examples/default\"\u003e\u003cimg src=\"https://img.shields.io/badge/Deploy%20with%20IBM%20Cloud%20Schematics-0f62fe?style=flat\u0026logo=ibm\u0026logoColor=white\u0026labelColor=0f62fe\" alt=\"Deploy with IBM Cloud Schematics\" style=\"height: 16px; vertical-align: text-bottom; margin-left: 5px;\"\u003e\u003c/a\u003e\n      \u003c/li\u003e\n    \u003c/ul\u003e\n    ℹ️ Ctrl/Cmd+Click or right-click on the Schematics deploy button to open in a new tab.\n  \u003c/li\u003e\n  \u003cli\u003e\u003ca href=\"#contributing\"\u003eContributing\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c!-- END OVERVIEW HOOK --\u003e\n\n## terraform-ibm-iam-account-settings\n\n### Usage\n\n```hcl\nmodule \"iam_account_settings\" {\n  source               = \"terraform-ibm-modules/iam-account-settings/ibm\"\n  version              = \"X.X.X\"  # Replace \"X.X.X\" with a release version to lock into a specific release\n  allowed_ip_addresses = [\"17.5.7.8.0/16\"]\n\n  # example usage of creating CBR zones within the module\n  # see https://github.com/terraform-ibm-modules/terraform-ibm-cbr/tree/main/modules/cbr-zone-module for more details\n  cbr_zones = [{\n    name             = \"default-zone-1\"\n    zone_description = \"test zone in iam-account-settings module\"\n    addresses = [{\n      type = \"serviceRef\"\n      ref = {\n        account_id   = data.ibm_iam_account_settings.iam_account_settings.account_id\n        service_name = \"secrets-manager\"\n      }\n    }]\n  }]\n}\n```\n\n### User MFA\n\nWhen specifying User MFA ([`user_mfa`](#input_user_mfa)), use the following format:\n\n```\nvariable \"user_mfa\" {\n  type = set(object({\n    iam_id = string\n    mfa = string\n  }))\n  default = [{\n\n    iam_id = \"IBMid-3x000xx3xH\"\n    mfa    = \"LEVEL3\"\n  },\n  {\n    iam_id = \"IBMid-50xG4CxSQx\"\n    mfa = \"NONE\"\n  }]\n  }\n\n```\n\nWhen/if it is necessary to delete/reset the MFA configuration for all users, use the [`user_mfa_reset`](#input_user_mfa_reset) input var.\n\n### Required IAM access policies\n\nYou need the following permissions to run this module.\n\n- Account Management\n    - **IAM Access Groups** service\n        - `Administrator` platform access\n    - **IAM Access Management** service\n        - `Editor` platform access\n    - **IAM Identity** service\n        - `Operator` platform access\n    - **IBM Cloud Shell** service\n        - `Administrator` platform access\n\n\u003c!-- BEGINNING OF PRE-COMMIT-TERRAFORM DOCS HOOK --\u003e\n### Requirements\n\n| Name | Version |\n|------|---------|\n| \u003ca name=\"requirement_terraform\"\u003e\u003c/a\u003e [terraform](#requirement\\_terraform) | \u003e= 1.9.0 |\n| \u003ca name=\"requirement_ibm\"\u003e\u003c/a\u003e [ibm](#requirement\\_ibm) | \u003e= 1.89.0, \u003c 3.0.0 |\n\n### Modules\n\n| Name | Source | Version |\n|------|--------|---------|\n| \u003ca name=\"module_cbr_zones\"\u003e\u003c/a\u003e [cbr\\_zones](#module\\_cbr\\_zones) | terraform-ibm-modules/cbr/ibm//modules/cbr-zone-module | v1.36.1 |\n\n### Resources\n\n| Name | Type |\n|------|------|\n| [ibm_cloud_shell_account_settings.cloud_shell_account_settings](https://registry.terraform.io/providers/IBM-Cloud/ibm/latest/docs/resources/cloud_shell_account_settings) | resource |\n| [ibm_iam_access_group_account_settings.iam_access_group_account_settings](https://registry.terraform.io/providers/IBM-Cloud/ibm/latest/docs/resources/iam_access_group_account_settings) | resource |\n| [ibm_iam_account_settings.iam_account_settings](https://registry.terraform.io/providers/IBM-Cloud/ibm/latest/docs/resources/iam_account_settings) | resource |\n| [ibm_cloud_shell_account_settings.cloud_shell_account_settings](https://registry.terraform.io/providers/IBM-Cloud/ibm/latest/docs/data-sources/cloud_shell_account_settings) | data source |\n| [ibm_iam_account_settings.iam_account_settings](https://registry.terraform.io/providers/IBM-Cloud/ibm/latest/docs/data-sources/iam_account_settings) | data source |\n\n### Inputs\n\n| Name | Description | Type | Default | Required |\n|------|-------------|------|---------|:--------:|\n| \u003ca name=\"input_access_token_expiration\"\u003e\u003c/a\u003e [access\\_token\\_expiration](#input\\_access\\_token\\_expiration) | Defines the access token expiration in seconds | `string` | `\"3600\"` | no |\n| \u003ca name=\"input_active_session_timeout\"\u003e\u003c/a\u003e [active\\_session\\_timeout](#input\\_active\\_session\\_timeout) | Specify how long (seconds) a user is allowed to work continuously in the account | `number` | `\"86400\"` | no |\n| \u003ca name=\"input_allowed_ip_addresses\"\u003e\u003c/a\u003e [allowed\\_ip\\_addresses](#input\\_allowed\\_ip\\_addresses) | List of the IP addresses and subnets from which IAM tokens can be created for the account. | `list(any)` | `[]` | no |\n| \u003ca name=\"input_api_creation\"\u003e\u003c/a\u003e [api\\_creation](#input\\_api\\_creation) | When restriction is enabled, only users, including the account owner, assigned the User API key creator role on the IAM Identity Service can create API keys. Allowed values are 'RESTRICTED', 'NOT\\_RESTRICTED', or 'NOT\\_SET' (to 'unset' a previous set value). | `string` | `\"RESTRICTED\"` | no |\n| \u003ca name=\"input_cbr_zones\"\u003e\u003c/a\u003e [cbr\\_zones](#input\\_cbr\\_zones) | A list of CBR zones created by the module | \u003cpre\u003elist(object({\u003cbr/\u003e    account_id = optional(string)\u003cbr/\u003e    addresses = optional(list(object({\u003cbr/\u003e      type  = optional(string)\u003cbr/\u003e      value = optional(string)\u003cbr/\u003e      ref = optional(object({\u003cbr/\u003e        account_id       = string\u003cbr/\u003e        location         = optional(string)\u003cbr/\u003e        service_instance = optional(string)\u003cbr/\u003e        service_name     = optional(string)\u003cbr/\u003e        service_type     = optional(string)\u003cbr/\u003e      }))\u003cbr/\u003e    })), [])\u003cbr/\u003e    excluded_addresses = optional(list(object({\u003cbr/\u003e      type  = optional(string)\u003cbr/\u003e      value = optional(string)\u003cbr/\u003e    })), [])\u003cbr/\u003e    name             = string\u003cbr/\u003e    zone_description = optional(string, null)\u003cbr/\u003e  }))\u003c/pre\u003e | `[]` | no |\n| \u003ca name=\"input_enforce_allowed_ip_addresses\"\u003e\u003c/a\u003e [enforce\\_allowed\\_ip\\_addresses](#input\\_enforce\\_allowed\\_ip\\_addresses) | If true IP address restriction will be enforced, If false, traffic originated outside specified allowed IP address set is monitored with audit events sent to SIEM and Activity Tracker. After running in monitored mode to test this variable, it should then explicitly be set to true to enforce IP allow listing. | `bool` | `true` | no |\n| \u003ca name=\"input_inactive_session_timeout\"\u003e\u003c/a\u003e [inactive\\_session\\_timeout](#input\\_inactive\\_session\\_timeout) | Specify how long (seconds) a user is allowed to stay logged in the account while being inactive/idle | `string` | `\"7200\"` | no |\n| \u003ca name=\"input_max_sessions_per_identity\"\u003e\u003c/a\u003e [max\\_sessions\\_per\\_identity](#input\\_max\\_sessions\\_per\\_identity) | Defines the maximum allowed sessions per identity required by the account. Supports any whole number greater than '0', or 'NOT\\_SET' to unset account setting and use service default. | `string` | `\"NOT_SET\"` | no |\n| \u003ca name=\"input_mfa\"\u003e\u003c/a\u003e [mfa](#input\\_mfa) | Specify Multi-Factor Authentication method in the account. Supported valid values are 'NONE' (No MFA trait set), 'TOTP' (For all non-federated IBMId users), 'TOTP4ALL' (For all users), 'LEVEL1' (Email based MFA for all users), 'LEVEL2' (TOTP based MFA for all users), 'LEVEL3' (U2F MFA for all users). | `string` | `\"TOTP4ALL\"` | no |\n| \u003ca name=\"input_public_access_enabled\"\u003e\u003c/a\u003e [public\\_access\\_enabled](#input\\_public\\_access\\_enabled) | Enable/Disable public access group in which resources are open anyone regardless if they are member of your account or not | `bool` | `false` | no |\n| \u003ca name=\"input_refresh_token_expiration\"\u003e\u003c/a\u003e [refresh\\_token\\_expiration](#input\\_refresh\\_token\\_expiration) | Defines the refresh token expiration in seconds | `string` | `\"259200\"` | no |\n| \u003ca name=\"input_serviceid_creation\"\u003e\u003c/a\u003e [serviceid\\_creation](#input\\_serviceid\\_creation) | When restriction is enabled, only users, including the account owner, assigned the Service ID creator role on the IAM Identity Service can create service IDs. Allowed values are 'RESTRICTED', 'NOT\\_RESTRICTED', or 'NOT\\_SET' (to 'unset' a previous set value). | `string` | `\"RESTRICTED\"` | no |\n| \u003ca name=\"input_shell_settings_enabled\"\u003e\u003c/a\u003e [shell\\_settings\\_enabled](#input\\_shell\\_settings\\_enabled) | Enable global shell settings to all users in the account. If `skip_cloud_shell_calls` is set to true, then this setting is ignored. | `bool` | `false` | no |\n| \u003ca name=\"input_skip_cloud_shell_calls\"\u003e\u003c/a\u003e [skip\\_cloud\\_shell\\_calls](#input\\_skip\\_cloud\\_shell\\_calls) | Skip Cloud Shell calls in the account. | `bool` | `false` | no |\n| \u003ca name=\"input_user_mfa\"\u003e\u003c/a\u003e [user\\_mfa](#input\\_user\\_mfa) | Specify Multi-Factor Authentication method for specific users the account. Supported valid values are 'NONE' (No MFA trait set), 'TOTP' (For all non-federated IBMId users), 'TOTP4ALL' (For all users), 'LEVEL1' (Email based MFA for all users), 'LEVEL2' (TOTP based MFA for all users), 'LEVEL3' (U2F MFA for all users). Example of format is available here \u003e https://github.com/terraform-ibm-modules/terraform-ibm-iam-account-settings#usage | \u003cpre\u003eset(object({\u003cbr/\u003e    iam_id = string\u003cbr/\u003e    mfa    = string\u003cbr/\u003e  }))\u003c/pre\u003e | `[]` | no |\n| \u003ca name=\"input_user_mfa_reset\"\u003e\u003c/a\u003e [user\\_mfa\\_reset](#input\\_user\\_mfa\\_reset) | Set to true to delete all user MFA settings configured in the targeted account, and ignoring entries declared in var `user_mfa` | `bool` | `false` | no |\n\n### Outputs\n\n| Name | Description |\n|------|-------------|\n| \u003ca name=\"output_account_allowed_ip_addresses\"\u003e\u003c/a\u003e [account\\_allowed\\_ip\\_addresses](#output\\_account\\_allowed\\_ip\\_addresses) | Current allowed IP addresses |\n| \u003ca name=\"output_account_allowed_ip_addresses_control_mode\"\u003e\u003c/a\u003e [account\\_allowed\\_ip\\_addresses\\_control\\_mode](#output\\_account\\_allowed\\_ip\\_addresses\\_control\\_mode) | Current allowed IP addresses enforcement control mode, will indicate RESTRICT if account\\_allowed\\_ip\\_addresses\\_enforced is TRUE |\n| \u003ca name=\"output_account_allowed_ip_addresses_enforced\"\u003e\u003c/a\u003e [account\\_allowed\\_ip\\_addresses\\_enforced](#output\\_account\\_allowed\\_ip\\_addresses\\_enforced) | Current allowed IP addresses enforcement state |\n| \u003ca name=\"output_account_iam_access_token_expiration\"\u003e\u003c/a\u003e [account\\_iam\\_access\\_token\\_expiration](#output\\_account\\_iam\\_access\\_token\\_expiration) | Current access token expiration |\n| \u003ca name=\"output_account_iam_active_session_timeout\"\u003e\u003c/a\u003e [account\\_iam\\_active\\_session\\_timeout](#output\\_account\\_iam\\_active\\_session\\_timeout) | Current active session timeout |\n| \u003ca name=\"output_account_iam_apikey_creation\"\u003e\u003c/a\u003e [account\\_iam\\_apikey\\_creation](#output\\_account\\_iam\\_apikey\\_creation) | Current state of API key creation restriction |\n| \u003ca name=\"output_account_iam_inactive_session_timeout\"\u003e\u003c/a\u003e [account\\_iam\\_inactive\\_session\\_timeout](#output\\_account\\_iam\\_inactive\\_session\\_timeout) | Current inactive session timeout |\n| \u003ca name=\"output_account_iam_mfa\"\u003e\u003c/a\u003e [account\\_iam\\_mfa](#output\\_account\\_iam\\_mfa) | Current MFA setting |\n| \u003ca name=\"output_account_iam_refresh_token_expiration\"\u003e\u003c/a\u003e [account\\_iam\\_refresh\\_token\\_expiration](#output\\_account\\_iam\\_refresh\\_token\\_expiration) | Current refresh token expiration |\n| \u003ca name=\"output_account_iam_serviceid_creation\"\u003e\u003c/a\u003e [account\\_iam\\_serviceid\\_creation](#output\\_account\\_iam\\_serviceid\\_creation) | Current state of ServiceID creation restriction |\n| \u003ca name=\"output_account_iam_user_mfa_list\"\u003e\u003c/a\u003e [account\\_iam\\_user\\_mfa\\_list](#output\\_account\\_iam\\_user\\_mfa\\_list) | Current list of users with specific MFA settings |\n| \u003ca name=\"output_account_public_access\"\u003e\u003c/a\u003e [account\\_public\\_access](#output\\_account\\_public\\_access) | Current state of public access group setting |\n| \u003ca name=\"output_account_shell_settings_status\"\u003e\u003c/a\u003e [account\\_shell\\_settings\\_status](#output\\_account\\_shell\\_settings\\_status) | Current state of global shell setting |\n| \u003ca name=\"output_account_zones\"\u003e\u003c/a\u003e [account\\_zones](#output\\_account\\_zones) | Current CBR zones managed by the module |\n\u003c!-- END OF PRE-COMMIT-TERRAFORM DOCS HOOK --\u003e\n\n\u003c!-- Leave this section as is so that your module has a link to local development environment set up steps for contributors to follow --\u003e\n## Contributing\n\nYou can report issues and request features for this module in GitHub issues in the module repo. See [Report an issue or request a feature](https://github.com/terraform-ibm-modules/.github/blob/main/.github/SUPPORT.md).\n\nTo set up your local development environment, see [Local development setup](https://terraform-ibm-modules.github.io/documentation/#/local-dev-setup) in the project documentation.\n","project_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2Fterraform-ibm-modules%2Fterraform-ibm-iam-account-settings","html_url":"https://awesome.ecosyste.ms/projects/github.com%2Fterraform-ibm-modules%2Fterraform-ibm-iam-account-settings","lists_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2Fterraform-ibm-modules%2Fterraform-ibm-iam-account-settings/lists"}