Security Config Rules Dashboard
The Security Config Rules Dashboard provides an in-depth look at resource and AWS Config rule compliance of AMS accounts. You can filter the report by rule severity to prioritize the most critical findings. The following table lists the data provided by this report.
Field name | Dataset field name | Definition |
---|---|---|
AWS account ID | AWS account ID | The account ID tied to related resources. |
report datetime | Report Date | The date and time the report was generated. |
customer_name | Customer Name | The customer name. |
account_name | Account Name | The name associated with the account ID |
resource_id | Resource ID | An identifier for a resource. |
resource_region | Resource Region | The AWS Region where the resource is located. |
resource_type | Resource Type | The AWS service or resource type. |
resource_name | Resource Name | The name for the resource. |
resource_ams_flag | Resource AMS Flag | If the resource is AMS owned, then this flag is set to TRUE. If the resource is customer-owned, then this flag is set to FALSE. If ownership is not known, then this flag is set to UNKNOWN. |
config_rule | Config Rule | The non-customizable name for the config rule. |
config_rule_description | Config Rule Description | A description of the config rule. |
source_identifier | Source Identifier | A unique identifier for the managed config rule and no identifier for a custom config rule. |
compliance_flag | Compliance Flag | Shows if the resources are compliant or non-compliant with the config rules. |
rule_type | Rule Type | Indicates if the rule is predefined or custom built. |
exception_flag | Exception Flag | The resource exception flag shows the risk acceptance against a noncompliant resource. If the resource exception flag is TRUE for a resource, then the resource is exempted. If the exception flag is NULL, then the resource is not exempted. |
cal_dt | Date | The evaluation date of the rule. |
remediation_description | Remediation Description | A description of how to remediate rule compliance. |
severity | Severity | Config rule severity indicates the impact of non-compliance. |
customer_action | Customer Action | Action needed by you to remediate thus rule. |
recommendation | Recommendation | A description of what the config rule checks for. |
remediation_category | Remediation Category | The default actions that AMS takes when this rule becomes non-compliant. |