Package-level declarations
Types
A date range unit for the date filter.
The condition to apply to the key value when filtering Security Hub findings with a map filter. To search for values that have the filter value, use one of the following comparison operators:
Whether the rule is active after it is created. If this parameter is equal to `ENABLED`, ASH applies the rule to findings and finding updates after the rule is created.
Specifies that the rule action should update the Types finding field. The Types finding field classifies findings in the format of namespace/category/classifier. For more information, see Types taxonomy for ASFF in the AWS Security Hub User Guide .
The severity value of the finding. The allowed values are the following.
The rule action updates the VerificationState field of a finding.
The condition to apply to a string value when filtering Security Hub findings.
The status of the investigation into the finding. The workflow status is specific to an individual finding. It does not affect the generation of new findings. For example, setting the workflow status to SUPPRESSED or RESOLVED does not prevent a new finding for the same issue. The allowed values are the following.
Identifies whether a control parameter uses a custom user-defined value or subscribes to the default AWS Security Hub behavior.
The current status of the Security Hub administrator account. Indicates whether the account is currently enabled as a Security Hub administrator
Indicates whether to link all Regions, all Regions except for a list of excluded Regions, or a list of included Regions
A date range unit for the date filter.
The condition to apply to the key value when filtering Security Hub findings with a map filter.
The condition to apply to a string value when filtering Security Hub findings.
Whether to automatically enable Security Hub default standards in new member accounts when they join the organization.
Indicates whether the organization uses local or central configuration.
Describes whether central configuration could be enabled as the ConfigurationType for the organization.
The current status of the association between the specified target and the configuration
Indicates whether the association between the specified target and the configuration was directly applied by the Security Hub delegated administrator or inherited from a parent
Indicates whether the target is an AWS account, organizational unit, or the organization root