aws.securityhub.get_configuration_policy_association
Example SQL Queries
SELECT * FROMaws.securityhub.get_configuration_policy_associationWHERE"target" = 'VALUE';Description
Returns the association between a configuration and a target account, organizational unit, or the root. The configuration can be a configuration policy or self-managed behavior. Only the Security Hub delegated administrator can invoke this operation from the home Region.
Table Definition
| Column Name | Column Data Type |
|---|---|
| target Required Input Column The target account ID, organizational unit ID, or the root ID to retrieve the association for. | STRUCT( |
Show child fields
| |
| _aws_profile Input Column The AWS profile defines the AWS identity used. It can be defined via credentials or by assuming a IAM role. | STRUCT( |
Show child fields
| |
| _aws_region Input Column The AWS region to use. | VARCHAR |
| association_status The current status of the association between the specified target and the configuration. | VARCHAR |
| association_status_message The explanation for a FAILED value for AssociationStatus. | VARCHAR |
| association_type Indicates whether the association between the specified target and the configuration was directly applied by the Security Hub delegated administrator or inherited from a parent. | VARCHAR |
| configuration_policy_id The universally unique identifier (UUID) of a configuration policy. For self-managed behavior, the value is SELF_MANAGED_SECURITY_HUB. | VARCHAR |
| target_id The target account ID, organizational unit ID, or the root ID for which the association is retrieved. | VARCHAR |
| target_type Specifies whether the target is an Amazon Web Services account, organizational unit, or the organization root. | VARCHAR |
| updated_at The date and time, in UTC and ISO 8601 format, that the configuration policy association was last updated. | TIMESTAMP_S |