Skip to main content

network_insights_access_scope_analyses

Creates, updates, deletes or gets a network_insights_access_scope_analysis resource or lists network_insights_access_scope_analyses in a region

Overview

Namenetwork_insights_access_scope_analyses
TypeResource
DescriptionResource schema for AWS::EC2::NetworkInsightsAccessScopeAnalysis
Idawscc.ec2.network_insights_access_scope_analyses

Fields

NameDatatypeDescription
network_insights_access_scope_analysis_idstring
network_insights_access_scope_analysis_arnstring
network_insights_access_scope_idstring
statusstring
status_messagestring
start_datestring
end_datestring
findings_foundstring
analyzed_eni_countinteger
tagsarray
regionstringAWS region.

For more information, see AWS::EC2::NetworkInsightsAccessScopeAnalysis.

Methods

NameResourceAccessible byRequired Params
create_resourcenetwork_insights_access_scope_analysesINSERTNetworkInsightsAccessScopeId, region
delete_resourcenetwork_insights_access_scope_analysesDELETEIdentifier, region
update_resourcenetwork_insights_access_scope_analysesUPDATEIdentifier, PatchDocument, region
list_resourcesnetwork_insights_access_scope_analyses_list_onlySELECTregion
get_resourcenetwork_insights_access_scope_analysesSELECTIdentifier, region

SELECT examples

Gets all properties from an individual network_insights_access_scope_analysis.

SELECT
region,
network_insights_access_scope_analysis_id,
network_insights_access_scope_analysis_arn,
network_insights_access_scope_id,
status,
status_message,
start_date,
end_date,
findings_found,
analyzed_eni_count,
tags
FROM awscc.ec2.network_insights_access_scope_analyses
WHERE
region = '{{ region }}' AND
Identifier = '{{ network_insights_access_scope_analysis_id }}';

INSERT example

Use the following StackQL query and manifest file to create a new network_insights_access_scope_analysis resource, using stack-deploy.

/*+ create */
INSERT INTO awscc.ec2.network_insights_access_scope_analyses (
NetworkInsightsAccessScopeId,
region
)
SELECT
'{{ network_insights_access_scope_id }}',
'{{ region }}'
RETURNING
ErrorCode,
EventTime,
Identifier,
Operation,
OperationStatus,
RequestToken,
ResourceModel,
RetryAfter,
StatusMessage,
TypeName
;

UPDATE example

Use the following StackQL query and manifest file to update a network_insights_access_scope_analysis resource, using stack-deploy.

/*+ update */
UPDATE awscc.ec2.network_insights_access_scope_analyses
SET PatchDocument = string('{{ {
"Tags": tags
} | generate_patch_document }}')
WHERE
region = '{{ region }}' AND
Identifier = '{{ network_insights_access_scope_analysis_id }}'
RETURNING
ErrorCode,
EventTime,
Identifier,
Operation,
OperationStatus,
RequestToken,
ResourceModel,
RetryAfter,
StatusMessage,
TypeName
;

DELETE example

/*+ delete */
DELETE FROM awscc.ec2.network_insights_access_scope_analyses
WHERE
Identifier = '{{ network_insights_access_scope_analysis_id }}' AND
region = '{{ region }}'
RETURNING
ErrorCode,
EventTime,
Identifier,
Operation,
OperationStatus,
RequestToken,
ResourceModel,
RetryAfter,
StatusMessage,
TypeName
;

Additional Parameters

Mutable resources in the Cloud Control provider support additional optional parameters which can be supplied with INSERT, UPDATE, or DELETE operations. These include:

ParameterDescription
ClientToken
A unique identifier to ensure the idempotency of the resource request.This allows the provider to accurately distinguish between retries and new requests.
A client token is valid for 36 hours once used.
After that, a resource request with the same client token is treated as a new request.
If you do not specify a client token, one is generated for inclusion in the request.
RoleArn
The ARN of the IAM role used to perform this resource operation.The role specified must have the permissions required for this operation.
If you do not specify a role, a temporary session is created using your AWS user credentials.
TypeVersionId
For private resource types, the type version to use in this resource operation.If you do not specify a resource version, the default version is used.

Permissions

To operate on the network_insights_access_scope_analyses resource, the following permissions are required:

ec2:CreateTags,
ec2:StartNetworkInsightsAccessScopeAnalysis,
ec2:GetTransitGatewayRouteTablePropagations,
ec2:Describe*,
elasticloadbalancing:Describe*,
directconnect:Describe*,
tiros:CreateQuery,
tiros:GetQueryAnswer,
tiros:GetQueryExplanation