Skip to content

aws.inspector2.list_cis_scan_results_aggregated_by_target_resource

Example SQL Queries

SELECT * FROM
aws.inspector2.list_cis_scan_results_aggregated_by_target_resource
WHERE
"scan_arn" = 'VALUE';

Description

Lists scan results aggregated by a target resource.

Table Definition

Column NameColumn Data Type
scan_arn Required Input Column

The scan ARN for the CIS target resource.

VARCHAR
filter_criteria Input Column

The filter criteria.

STRUCT(
"account_id_filters" STRUCT(
"comparison" VARCHAR,
"value" VARCHAR
)[],
"check_id_filters" STRUCT(
"comparison" VARCHAR,
"value" VARCHAR
)[],
"failed_checks_filters" STRUCT(
"lower_inclusive" BIGINT,
"upper_inclusive" BIGINT
)[],
"platform_filters" STRUCT(
"comparison" VARCHAR,
"value" VARCHAR
)[],
"status_filters" STRUCT(
"comparison" VARCHAR,
"value" VARCHAR
)[],
"target_resource_id_filters" STRUCT(
"comparison" VARCHAR,
"value" VARCHAR
)[],
"target_resource_tag_filters" STRUCT(
"comparison" VARCHAR,
"key" VARCHAR,
"value" VARCHAR
)[],
"target_status_filters" STRUCT(
"comparison" VARCHAR,
"value" VARCHAR
)[],
"target_status_reason_filters" STRUCT(
"comparison" VARCHAR,
"value" VARCHAR
)[]
)
Show child fields
filter_criteria.account_id_filters[]
Show child fields
filter_criteria.account_id_filters[].comparison

The comparison value of the CIS string filter.

filter_criteria.account_id_filters[].value

The value of the CIS string filter.

filter_criteria.check_id_filters[]
Show child fields
filter_criteria.check_id_filters[].comparison

The comparison value of the CIS string filter.

filter_criteria.check_id_filters[].value

The value of the CIS string filter.

filter_criteria.failed_checks_filters[]
Show child fields
filter_criteria.failed_checks_filters[].lower_inclusive

The CIS number filter's lower inclusive.

filter_criteria.failed_checks_filters[].upper_inclusive

The CIS number filter's upper inclusive.

filter_criteria.platform_filters[]
Show child fields
filter_criteria.platform_filters[].comparison

The comparison value of the CIS string filter.

filter_criteria.platform_filters[].value

The value of the CIS string filter.

filter_criteria.status_filters[]
Show child fields
filter_criteria.status_filters[].comparison

The comparison value of the CIS result status filter.

filter_criteria.status_filters[].value

The value of the CIS result status filter.

filter_criteria.target_resource_id_filters[]
Show child fields
filter_criteria.target_resource_id_filters[].comparison

The comparison value of the CIS string filter.

filter_criteria.target_resource_id_filters[].value

The value of the CIS string filter.

filter_criteria.target_resource_tag_filters[]
Show child fields
filter_criteria.target_resource_tag_filters[].comparison

The tag filter comparison value.

filter_criteria.target_resource_tag_filters[].key

The tag filter key.

filter_criteria.target_resource_tag_filters[].value

The tag filter value.

filter_criteria.target_status_filters[]
Show child fields
filter_criteria.target_status_filters[].comparison

The comparison value of the CIS target status filter.

filter_criteria.target_status_filters[].value

The value of the CIS target status filter.

filter_criteria.target_status_reason_filters[]
Show child fields
filter_criteria.target_status_reason_filters[].comparison

The comparison value of the CIS target status reason filter.

filter_criteria.target_status_reason_filters[].value

The value of the CIS target status reason filter.

sort_by Input Column

The sort by order.

VARCHAR
sort_order Input Column

The sort order.

VARCHAR
_aws_profile Input Column

The AWS profile defines the AWS identity used. It can be defined via credentials or by assuming a IAM role.

STRUCT(
"type" VARCHAR,
"name" VARCHAR,
"account_id" VARCHAR,
"via_profile_name" VARCHAR,
"assumed_role_arn" VARCHAR,
"organization" STRUCT(
"account_name" VARCHAR,
"id" VARCHAR,
"tags" STRUCT(
"key" VARCHAR,
"value" VARCHAR
)[],
"master_account" STRUCT(
"id" VARCHAR,
"email" VARCHAR
),
"parents" STRUCT(
"type" VARCHAR,
"id" VARCHAR,
"name" VARCHAR,
"tags" STRUCT(
"key" VARCHAR,
"value" VARCHAR
)[]
)[]
)
)
Show child fields
_aws_profile.account_id

The AWS account id

_aws_profile.assumed_role_arn

The ARN of the assumed role

_aws_profile.name

The unique name of the profile.

_aws_profile.organization

Information about this profile's membership in the AWS organization.

Show child fields
_aws_profile.organization.account_name

The name of account speciifed by the organization

_aws_profile.organization.id

The organization id

_aws_profile.organization.master_account
Show child fields
_aws_profile.organization.master_account.email

The organization master account email address

_aws_profile.organization.master_account.id

The organization master account id

_aws_profile.organization.parents[]
Show child fields
_aws_profile.organization.parents[].id

The id of the parent

_aws_profile.organization.parents[].name

The name of the parent

_aws_profile.organization.parents[].tags[]
Show child fields
_aws_profile.organization.parents[].tags[].key
_aws_profile.organization.parents[].tags[].value
_aws_profile.organization.parents[].type

The type of parent can be an organization unit or a root

_aws_profile.organization.tags[]
Show child fields
_aws_profile.organization.tags[].key
_aws_profile.organization.tags[].value
_aws_profile.type

The type of profile, either 'credentials' or 'assumed_role'

_aws_profile.via_profile_name

This IAM role for this profile is assumed by first utilizing another profile with this name to obtain credentials.

_aws_region Input Column

The AWS region to use.

VARCHAR
account_id

The account ID for the CIS target resource.

VARCHAR
platform

The platform for the CIS target resource.

VARCHAR
status_counts

The target resource status counts.

STRUCT(
"failed" BIGINT,
"passed" BIGINT,
"skipped" BIGINT
)
Show child fields
status_counts.failed

The number of checks that failed.

status_counts.passed

The number of checks that passed.

status_counts.skipped

The number of checks that were skipped.

target_resource_id

The ID of the target resource.

VARCHAR
target_resource_tags

The tag for the target resource.

MAP(VARCHAR, VARCHAR[])
target_status

The status of the target resource.

VARCHAR
target_status_reason

The reason for the target resource.

VARCHAR