AWS::GuardDuty::CustomDetectionRuleAssociationResource Type definition for AWS::GuardDuty::CustomDetectionRuleAssociation. Associates a GuardDuty custom detection rule with the caller's account, enabling the rule in either LIVE or DRY_RUN mode.
3 configurable properties. 2 required. Click a row to see details.
| Property | Type | Flags |
|---|---|---|
Mode | string | Required |
RuleId | string | RequiredCreate-only |
Tags | Array<TagItem> |
Values returned after the resource is created. Access these with Fn::GetAtt.
| Attribute | Type | Description |
|---|---|---|
AccountId | string | The AWS account ID the association applies to. |
Arn | string | The Amazon Resource Name (ARN) of the association. |
AssociationId | string | The service-generated unique identifier of the association. |
CreatedAt | string | The time the association was created. |
UpdatedAt | string | The time the association was last updated. |
A minimal template with required properties and common optional ones.
AWSTemplateFormatVersion: "2010-09-09"
Description: Sample template for AWS::GuardDuty::CustomDetectionRuleAssociation
Resources:
MyResource:
Type: AWS::GuardDuty::CustomDetectionRuleAssociation
Properties:
RuleId: "my-ruleid"
Mode: "LIVE"
Tags:
- Key: Environment
Value: ProductionPermissions CloudFormation needs in your IAM role to manage this resource.
guardduty:CreateCustomDetectionRuleAssociationguardduty:GetCustomDetectionRuleAssociationguardduty:TagResourceguardduty:GetCustomDetectionRuleAssociationguardduty:UpdateCustomDetectionRuleAssociationguardduty:GetCustomDetectionRuleAssociationguardduty:TagResourceguardduty:UntagResourceguardduty:DeleteCustomDetectionRuleAssociationguardduty:GetCustomDetectionRuleAssociationguardduty:ListCustomDetectionRuleAssociationsOur bi-weekly newsletter teaches hands-on AWS fundamentals. No certification fluff - just practical knowledge.
Subscribe to NewsletterRuleIdThese properties cannot be changed after the resource is created. Updating them triggers a replacement.
RuleId