Skip to content

aws.resiliencehub.describe_app

Example SQL Queries

SELECT * FROM
aws.resiliencehub.describe_app
WHERE
"app_arn" = 'VALUE';

Description

Describes an Resilience Hub application.

Table Definition

Column NameColumn Data Type
app_arn Required Input Column

Amazon Resource Name (ARN) of the Resilience Hub application. The format for this ARN is: arn:partition:resiliencehub:region:account:app/app-id. For more information about ARNs, see Amazon Resource Names (ARNs) in the Amazon Web Services General Reference guide.

VARCHAR
_aws_profile Input Column

The AWS profile defines the AWS identity used. It can be defined via credentials or by assuming a IAM role.

STRUCT(
"type" VARCHAR,
"name" VARCHAR,
"account_id" VARCHAR,
"via_profile_name" VARCHAR,
"assumed_role_arn" VARCHAR,
"organization" STRUCT(
"account_name" VARCHAR,
"id" VARCHAR,
"tags" STRUCT(
"key" VARCHAR,
"value" VARCHAR
)[],
"master_account" STRUCT(
"id" VARCHAR,
"email" VARCHAR
),
"parents" STRUCT(
"type" VARCHAR,
"id" VARCHAR,
"name" VARCHAR,
"tags" STRUCT(
"key" VARCHAR,
"value" VARCHAR
)[]
)[]
)
)
Show child fields
_aws_profile.account_id

The AWS account id

_aws_profile.assumed_role_arn

The ARN of the assumed role

_aws_profile.name

The unique name of the profile.

_aws_profile.organization

Information about this profile's membership in the AWS organization.

Show child fields
_aws_profile.organization.account_name

The name of account speciifed by the organization

_aws_profile.organization.id

The organization id

_aws_profile.organization.master_account
Show child fields
_aws_profile.organization.master_account.email

The organization master account email address

_aws_profile.organization.master_account.id

The organization master account id

_aws_profile.organization.parents[]
Show child fields
_aws_profile.organization.parents[].id

The id of the parent

_aws_profile.organization.parents[].name

The name of the parent

_aws_profile.organization.parents[].tags[]
Show child fields
_aws_profile.organization.parents[].tags[].key
_aws_profile.organization.parents[].tags[].value
_aws_profile.organization.parents[].type

The type of parent can be an organization unit or a root

_aws_profile.organization.tags[]
Show child fields
_aws_profile.organization.tags[].key
_aws_profile.organization.tags[].value
_aws_profile.type

The type of profile, either 'credentials' or 'assumed_role'

_aws_profile.via_profile_name

This IAM role for this profile is assumed by first utilizing another profile with this name to obtain credentials.

_aws_region Input Column

The AWS region to use.

VARCHAR
app

The specified application, returned as an object with details including compliance status, creation time, description, resiliency score, and more.

STRUCT(
"app_arn" VARCHAR,
"assessment_schedule" VARCHAR,
"compliance_status" VARCHAR,
"creation_time" TIMESTAMP_S,
"description" VARCHAR,
"drift_status" VARCHAR,
"event_subscriptions" STRUCT(
"event_type" VARCHAR,
"name" VARCHAR,
"sns_topic_arn" VARCHAR
)[],
"last_app_compliance_evaluation_time" TIMESTAMP_S,
"last_drift_evaluation_time" TIMESTAMP_S,
"last_resiliency_score_evaluation_time" TIMESTAMP_S,
"name" VARCHAR,
"permission_model" STRUCT(
"cross_account_role_arns" VARCHAR[],
"invoker_role_name" VARCHAR,
"type" VARCHAR
),
"policy_arn" VARCHAR,
"resiliency_score" DOUBLE,
"rpo_in_secs" BIGINT,
"rto_in_secs" BIGINT,
"status" VARCHAR,
"tags" MAP(VARCHAR, VARCHAR)
)
Show child fields
app.app_arn

Amazon Resource Name (ARN) of the Resilience Hub application. The format for this ARN is: arn:partition:resiliencehub:region:account:app/app-id. For more information about ARNs, see Amazon Resource Names (ARNs) in the Amazon Web Services General Reference guide.

app.assessment_schedule

Assessment execution schedule with 'Daily' or 'Disabled' values.

app.compliance_status

Current status of compliance for the resiliency policy.

app.creation_time

Date and time when the app was created.

app.description

Optional description for an application.

app.drift_status

Indicates if compliance drifts (deviations) were detected while running an assessment for your application.

app.event_subscriptions[]
Show child fields
app.event_subscriptions[].event_type

The type of event you would like to subscribe and get notification for. Currently, Resilience Hub supports notifications only for Drift detected (DriftDetected) and Scheduled assessment failure (ScheduledAssessmentFailure) events.

app.event_subscriptions[].name

Unique name to identify an event subscription.

app.event_subscriptions[].sns_topic_arn

Amazon Resource Name (ARN) of the Amazon Simple Notification Service topic. The format for this ARN is: arn:partition:sns:region:account:topic-name. For more information about ARNs, see Amazon Resource Names (ARNs) in the Amazon Web Services General Reference guide.

app.last_app_compliance_evaluation_time

Date and time the most recent compliance evaluation.

app.last_drift_evaluation_time

Indicates the last time that a drift was evaluated.

app.last_resiliency_score_evaluation_time

Date and time the most recent resiliency score evaluation.

app.name

Name for the application.

app.permission_model

Defines the roles and credentials that Resilience Hub would use while creating the application, importing its resources, and running an assessment.

Show child fields
app.permission_model.cross_account_role_arns[]
app.permission_model.invoker_role_name

Existing Amazon Web Services IAM role name in the primary Amazon Web Services account that will be assumed by Resilience Hub Service Principle to obtain a read-only access to your application resources while running an assessment.

  • You must have iam:passRole permission for this role while creating or updating the application.

  • Currently, invokerRoleName accepts only [A-Za-z0-9_+=,.@-] characters.

app.permission_model.type

Defines how Resilience Hub scans your resources. It can scan for the resources by using a pre-existing role in your Amazon Web Services account, or by using the credentials of the current IAM user.

app.policy_arn

Amazon Resource Name (ARN) of the resiliency policy. The format for this ARN is: arn:partition:resiliencehub:region:account:resiliency-policy/policy-id. For more information about ARNs, see Amazon Resource Names (ARNs) in the Amazon Web Services General Reference guide.

app.resiliency_score

Current resiliency score for the application.

app.rpo_in_secs

Recovery Point Objective (RPO) in seconds.

app.rto_in_secs

Recovery Time Objective (RTO) in seconds.

app.status

Status of the application.

app.tags

Tags assigned to the resource. A tag is a label that you assign to an Amazon Web Services resource. Each tag consists of a key/value pair.