Skip to content

Returns the organization-level configuration for a custom detection rule

Description

Returns the organization-level configuration for a custom detection rule.

Usage

guardduty_get_custom_detection_rule_org_configuration(RuleId, Mode)

Arguments

  • RuleId

[required] The unique identifier for the custom detection rule.

  • Mode

[required] The execution mode of the organization configuration to retrieve. Valid values: LIVE | DRY_RUN.

Value

A list with the following syntax:

list(
  Configuration = list(
    RuleId = "string",
    Mode = "LIVE"|"DRY_RUN",
    Status = "ACTIVE"|"PROCESSING"|"FAILED",
    StatusReason = "string",
    IncludeAccountIds = list(
      "string"
    ),
    ExcludeAccountIds = list(
      "string"
    ),
    CreatedAt = as.POSIXct(
      "2015-01-01"
    ),
    UpdatedAt = as.POSIXct(
      "2015-01-01"
    ),
    ExpiresAt = as.POSIXct(
      "2015-01-01"
    )
  )
)

Request syntax

svc$get_custom_detection_rule_org_configuration(
  RuleId = "string",
  Mode = "LIVE"|"DRY_RUN"
)