I have a CloudFormation script that creates new users (with roles, policies etc).
I am hoping to ensure the new users have MFA enabled. The docs mention you have to "attach the MFA device to an IAM user after creating the MFA" (even though there is a Users property as below?) but they only point to how to do this in the console and CLI.
Type: AWS::IAM::VirtualMFADevice
Properties:
Users:
- !Ref user1
- !Ref user2
VirtualMfaDeviceName: Something
Is this operation not supported in CloudFormation maybe?