Problem Statement
I am working with FedRAMP High. I noticed that even after having the correct IAM Password Policy in place, AWS Config was marking my password policy as non-compliant.
Findings
The AWS Docs note that
The true and false values for the rule parameters are case-sensitive. If true is not provided in lowercase, it will be treated as false.
https://docs.aws.amazon.com/config/latest/developerguide/iam-password-policy.html
Referenced Files
https://github.com/awslabs/aws-config-rules/blob/master/aws-config-conformance-packs/Operational-Best-Practices-for-FedRAMP-HighPart1.yaml
https://github.com/awslabs/aws-config-rules/blob/master/aws-config-conformance-packs/Operational-Best-Practices-for-FedRAMP-HighPart2.yaml