Skip to main content

filters

Creates, updates, deletes or gets a filter resource or lists filters in a region

Overview

Namefilters
TypeResource
DescriptionInspector Filter resource schema
Idawscc.inspectorv2.filters

Fields

NameDatatypeDescription
namestringFindings filter name.
descriptionstringFindings filter description.
filter_criteriaobjectFindings filter criteria.
filter_actionstringFindings filter action.
arnstringFindings filter ARN.
tagsobject
regionstringAWS region.

For more information, see AWS::InspectorV2::Filter.

Methods

NameResourceAccessible byRequired Params
create_resourcefiltersINSERTName, FilterCriteria, FilterAction, region
delete_resourcefiltersDELETEIdentifier, region
update_resourcefiltersUPDATEIdentifier, PatchDocument, region
list_resourcesfilters_list_onlySELECTregion
get_resourcefiltersSELECTIdentifier, region

SELECT examples

Gets all properties from an individual filter.

SELECT
region,
name,
description,
filter_criteria,
filter_action,
arn,
tags
FROM awscc.inspectorv2.filters
WHERE
region = 'us-east-1' AND
Identifier = '{{ arn }}';

INSERT example

Use the following StackQL query and manifest file to create a new filter resource, using stack-deploy.

/*+ create */
INSERT INTO awscc.inspectorv2.filters (
Name,
FilterCriteria,
FilterAction,
region
)
SELECT
'{{ name }}',
'{{ filter_criteria }}',
'{{ filter_action }}',
'{{ region }}';

UPDATE example

Use the following StackQL query and manifest file to update a filter resource, using stack-deploy.

/*+ update */
UPDATE awscc.inspectorv2.filters
SET PatchDocument = string('{{ {
"Name": name,
"Description": description,
"FilterCriteria": filter_criteria,
"FilterAction": filter_action,
"Tags": tags
} | generate_patch_document }}')
WHERE
region = '{{ region }}' AND
Identifier = '{{ arn }}';

DELETE example

/*+ delete */
DELETE FROM awscc.inspectorv2.filters
WHERE
Identifier = '{{ arn }}' AND
region = 'us-east-1';

Permissions

To operate on the filters resource, the following permissions are required:

inspector2:CreateFilter,
inspector2:ListFilters,
inspector2:TagResource