Ensure GuardDuty is enbaled to specific org/region

Error: GuardDuty is not enbaled to specific org/region

Bridgecrew Policy ID: BC_AWS_GENERAL_66
Checkov Check ID: CKV2_AWS_3
Severity: LOW

GuardDuty is not enbaled to specific org/region

Description

TBA

Fix - Buildtime

Terraform

  • Resource: aws_guardduty_detector, aws_guardduty_organization_configuration
  • Argument: auto_enable of aws_guardduty_organization_configuration
resource "aws_guardduty_detector" "ok" {
  enable = true
}

resource "aws_guardduty_organization_configuration" "example" {
  auto_enable = true
  detector_id = aws_guardduty_detector.ok.id
}

Did this page help you?