Security Config Rules Dashboard - AMS Accelerate User Guide

Security Config Rules Dashboard

The Security Config Rules Dashboard provides an in-depth look at resource and AWS Config rule compliance of AMS accounts. You can filter the report by rule severity to prioritize the most critical findings. The following table lists the data provided by this report.

Field name Dataset field name Definition
AWS account ID AWS account ID The account ID tied to related resources.
report datetime Report Date The date and time the report was generated.
customer_name Customer Name The customer name.
account_name Account Name The name associated with the account ID
resource_id Resource ID An identifier for a resource.
resource_region Resource Region The AWS Region where the resource is located.
resource_type Resource Type The AWS service or resource type.
resource_name Resource Name The name for the resource.
resource_ams_flag Resource AMS Flag If the resource is AMS owned, then this flag is set to TRUE. If the resource is customer-owned, then this flag is set to FALSE. If ownership is not known, then this flag is set to UNKNOWN.
config_rule Config Rule The non-customizable name for the config rule.
config_rule_description Config Rule Description A description of the config rule.
source_identifier Source Identifier A unique identifier for the managed config rule and no identifier for a custom config rule.
compliance_flag Compliance Flag Shows if the resources are compliant or non-compliant with the config rules.
rule_type Rule Type Indicates if the rule is predefined or custom built.
exception_flag Exception Flag The resource exception flag shows the risk acceptance against a noncompliant resource. If the resource exception flag is TRUE for a resource, then the resource is exempted. If the exception flag is NULL, then the resource is not exempted.
cal_dt Date The evaluation date of the rule.
remediation_description Remediation Description A description of how to remediate rule compliance.
severity Severity Config rule severity indicates the impact of non-compliance.
customer_action Customer Action Action needed by you to remediate thus rule.
recommendation Recommendation A description of what the config rule checks for.
remediation_category Remediation Category The default actions that AMS takes when this rule becomes non-compliant.