Skip to content

aws.route53resolver.get_firewall_rule_group_association

Example SQL Queries

SELECT * FROM
aws.route53resolver.get_firewall_rule_group_association
WHERE
"firewall_rule_group_association_id" = 'VALUE';

Description

Retrieves a firewall rule group association, which enables DNS filtering for a VPC with one rule group. A VPC can have more than one firewall rule group association, and a rule group can be associated with more than one VPC.

Table Definition

Column NameColumn Data Type
firewall_rule_group_association_id Required Input Column

The identifier of the FirewallRuleGroupAssociation.

VARCHAR
_aws_profile Input Column

The AWS profile defines the AWS identity used. It can be defined via credentials or by assuming a IAM role.

STRUCT(
"type" VARCHAR,
"name" VARCHAR,
"account_id" VARCHAR,
"via_profile_name" VARCHAR,
"assumed_role_arn" VARCHAR,
"organization" STRUCT(
"account_name" VARCHAR,
"id" VARCHAR,
"tags" STRUCT(
"key" VARCHAR,
"value" VARCHAR
)[],
"master_account" STRUCT(
"id" VARCHAR,
"email" VARCHAR
),
"parents" STRUCT(
"type" VARCHAR,
"id" VARCHAR,
"name" VARCHAR,
"tags" STRUCT(
"key" VARCHAR,
"value" VARCHAR
)[]
)[]
)
)
Show child fields
_aws_profile.account_id

The AWS account id

_aws_profile.assumed_role_arn

The ARN of the assumed role

_aws_profile.name

The unique name of the profile.

_aws_profile.organization

Information about this profile's membership in the AWS organization.

Show child fields
_aws_profile.organization.account_name

The name of account speciifed by the organization

_aws_profile.organization.id

The organization id

_aws_profile.organization.master_account
Show child fields
_aws_profile.organization.master_account.email

The organization master account email address

_aws_profile.organization.master_account.id

The organization master account id

_aws_profile.organization.parents[]
Show child fields
_aws_profile.organization.parents[].id

The id of the parent

_aws_profile.organization.parents[].name

The name of the parent

_aws_profile.organization.parents[].tags[]
Show child fields
_aws_profile.organization.parents[].tags[].key
_aws_profile.organization.parents[].tags[].value
_aws_profile.organization.parents[].type

The type of parent can be an organization unit or a root

_aws_profile.organization.tags[]
Show child fields
_aws_profile.organization.tags[].key
_aws_profile.organization.tags[].value
_aws_profile.type

The type of profile, either 'credentials' or 'assumed_role'

_aws_profile.via_profile_name

This IAM role for this profile is assumed by first utilizing another profile with this name to obtain credentials.

_aws_region Input Column

The AWS region to use.

VARCHAR
firewall_rule_group_association

The association that you requested.

STRUCT(
"id" VARCHAR,
"arn" VARCHAR,
"firewall_rule_group_id" VARCHAR,
"vpc_id" VARCHAR,
"name" VARCHAR,
"priority" BIGINT,
"mutation_protection" VARCHAR,
"managed_owner_name" VARCHAR,
"status" VARCHAR,
"status_message" VARCHAR,
"creator_request_id" VARCHAR,
"creation_time" VARCHAR,
"modification_time" VARCHAR
)
Show child fields
firewall_rule_group_association.arn

The Amazon Resource Name (ARN) of the firewall rule group association.

firewall_rule_group_association.creation_time

The date and time that the association was created, in Unix time format and Coordinated Universal Time (UTC).

firewall_rule_group_association.creator_request_id

A unique string defined by you to identify the request. This allows you to retry failed requests without the risk of running the operation twice. This can be any unique string, for example, a timestamp.

firewall_rule_group_association.firewall_rule_group_id

The unique identifier of the firewall rule group.

firewall_rule_group_association.id

The identifier for the association.

firewall_rule_group_association.managed_owner_name

The owner of the association, used only for associations that are not managed by you. If you use Firewall Manager to manage your DNS Firewalls, then this reports Firewall Manager as the managed owner.

firewall_rule_group_association.modification_time

The date and time that the association was last modified, in Unix time format and Coordinated Universal Time (UTC).

firewall_rule_group_association.mutation_protection

If enabled, this setting disallows modification or removal of the association, to help prevent against accidentally altering DNS firewall protections.

firewall_rule_group_association.name

The name of the association.

firewall_rule_group_association.priority

The setting that determines the processing order of the rule group among the rule groups that are associated with a single VPC. DNS Firewall filters VPC traffic starting from rule group with the lowest numeric priority setting.

firewall_rule_group_association.status

The current status of the association.

firewall_rule_group_association.status_message

Additional information about the status of the response, if available.

firewall_rule_group_association.vpc_id

The unique identifier of the VPC that is associated with the rule group.