aws.ssm.list_compliance_items
Example SQL Queries
SELECT * FROMaws.ssm.list_compliance_items;Description
For a specified resource ID, this API operation returns a list of compliance statuses for different resource types. Currently, you can only specify one resource ID per call. List results depend on the criteria specified in the filter.
Table Definition
| Column Name | Column Data Type |
|---|---|
| filters Input Column One or more compliance filters. Use a filter to return a more specific list of results. | STRUCT( |
Show child fields
| |
| resource_ids Input Column The ID for the resources from which to get compliance information. Currently, you can only specify one resource ID. | VARCHAR[] |
Show child fields
| |
| resource_types Input Column The type of resource from which to get compliance information. Currently, the only supported resource type is ManagedInstance. | VARCHAR[] |
Show child fields
| |
| _aws_profile Input Column The AWS profile defines the AWS identity used. It can be defined via credentials or by assuming a IAM role. | STRUCT( |
Show child fields
| |
| _aws_region Input Column The AWS region to use. | VARCHAR |
| compliance_type The compliance type. For example, Association (for a State Manager association), Patch, or Custom:string are all valid compliance types. | VARCHAR |
| details A "Key": "Value" tag combination for the compliance item. | MAP(VARCHAR, VARCHAR) |
| execution_summary A summary for the compliance item. The summary includes an execution ID, the execution type (for example, command), and the execution time. | STRUCT( |
Show child fields
| |
| id An ID for the compliance item. For example, if the compliance item is a Windows patch, the ID could be the number of the KB article; for example: KB4010320. | VARCHAR |
| resource_id An ID for the resource. For a managed node, this is the node ID. | VARCHAR |
| resource_type The type of resource. ManagedInstance is currently the only supported resource type. | VARCHAR |
| severity The severity of the compliance status. Severity can be one of the following: Critical, High, Medium, Low, Informational, Unspecified. | VARCHAR |
| status The status of the compliance item. An item is either COMPLIANT, NON_COMPLIANT, or an empty string (for Windows patches that aren't applicable). | VARCHAR |
| title A title for the compliance item. For example, if the compliance item is a Windows patch, the title could be the title of the KB article for the patch; for example: Security Update for Active Directory Federation Services. | VARCHAR |