AwsLambda - AWS Security Hub

本文為英文版的機器翻譯版本,如內容有任何歧義或不一致之處,概以英文版為準。

AwsLambda

以下是 AwsLambda 資源 AWS 的安全調查結果格式 (ASFF) 語法範例。

AWS Security Hub 將各種來源的調查結果標準化為 ASFF。如需 的背景資訊ASFF,請參閱 AWS 安全調查結果格式 (ASFF)

AwsLambdaFunction

AwsLambdaFunction 物件提供有關 Lambda 函數組態的詳細資訊。

下列範例顯示 AwsLambdaFunction 物件 AWS 的安全調查結果格式 (ASFF)。若要檢視AwsLambdaFunction屬性的說明,請參閱 參考 AwsLambdaFunctionDetails中的 。 AWS Security Hub API

範例

"AwsLambdaFunction": { "Architectures": [ "x86_64" ], "Code": { "S3Bucket": "amzn-s3-demo-bucket", "S3Key": "samplekey", "S3ObjectVersion": "2", "ZipFile": "myzip.zip" }, "CodeSha256": "1111111111111abcdef", "DeadLetterConfig": { "TargetArn": "arn:aws:lambda:us-east-2:123456789012:queue:myqueue:2" }, "Environment": { "Variables": { "Stage": "foobar" }, "Error": { "ErrorCode": "Sample-error-code", "Message": "Caller principal is a manager." } }, "FunctionName": "CheckOut", "Handler": "main.py:lambda_handler", "KmsKeyArn": "arn:aws:kms:us-west-2:123456789012:key/mykey", "LastModified": "2001-09-11T09:00:00Z", "Layers": { "Arn": "arn:aws:lambda:us-east-2:123456789012:layer:my-layer:3", "CodeSize": 169 }, "PackageType": "Zip", "RevisionId": "23", "Role": "arn:aws:iam::123456789012:role/Accounting-Role", "Runtime": "go1.7", "Timeout": 15, "TracingConfig": { "Mode": "Active" }, "Version": "$LATEST$", "VpcConfig": { "SecurityGroupIds": ["sg-085912345678492fb", "sg-08591234567bdgdc"], "SubnetIds": ["subnet-071f712345678e7c8", "subnet-07fd123456788a036"] }, "MasterArn": "arn:aws:lambda:us-east-2:123456789012:\$LATEST", "MemorySize": 2048 }

AwsLambdaLayerVersion

AwsLambdaLayerVersion 物件提供有關 Lambda 層版本的詳細資訊。

下列範例顯示 AwsLambdaLayerVersion 物件 AWS 的安全調查結果格式 (ASFF)。若要檢視AwsLambdaLayerVersion屬性的說明,請參閱 參考 AwsLambdaLayerVersionDetails中的 。 AWS Security Hub API

範例

"AwsLambdaLayerVersion": { "Version": 2, "CompatibleRuntimes": [ "java8" ], "CreatedDate": "2019-10-09T22:02:00.274+0000" }