/* * Copyright 2018-2023 Amazon.com, Inc. or its affiliates. All Rights Reserved. * * Licensed under the Apache License, Version 2.0 (the "License"). You may not use this file except in compliance with * the License. A copy of the License is located at * * http://aws.amazon.com/apache2.0 * * or in the "license" file accompanying this file. This file is distributed on an "AS IS" BASIS, WITHOUT WARRANTIES OR * CONDITIONS OF ANY KIND, either express or implied. See the License for the specific language governing permissions * and limitations under the License. */ package com.amazonaws.services.auditmanager.model; import java.io.Serializable; import javax.annotation.Generated; import com.amazonaws.protocol.StructuredPojo; import com.amazonaws.protocol.ProtocolMarshaller; /** *

* A keyword that relates to the control data source. *

*

* For manual evidence, this keyword indicates if the manual evidence is a file or text. *

*

* For automated evidence, this keyword identifies a specific CloudTrail event, Config rule, Security Hub control, or * Amazon Web Services API name. *

*

* To learn more about the supported keywords that you can use when mapping a control data source, see the following * pages in the Audit Manager User Guide: *

* * * @see AWS API * Documentation */ @Generated("com.amazonaws:aws-java-sdk-code-generator") public class SourceKeyword implements Serializable, Cloneable, StructuredPojo { /** *

* The input method for the keyword. *

* */ private String keywordInputType; /** *

* The value of the keyword that's used when mapping a control data source. For example, this can be a CloudTrail * event name, a rule name for Config, a Security Hub control, or the name of an Amazon Web Services API call. *

*

* If you’re mapping a data source to a rule in Config, the keywordValue that you specify depends on * the type of rule: *

* * *

* The keywordValue is case sensitive. If you enter a value incorrectly, Audit Manager might not * recognize the data source mapping. As a result, you might not successfully collect evidence from that data source * as intended. *

*

* Keep in mind the following requirements, depending on the data source type that you're using. *

*
    *
  1. *

    * For Config: *

    *
      *
    • *

      * For managed rules, make sure that the keywordValue is the rule identifier in * ALL_CAPS_WITH_UNDERSCORES. For example, CLOUDWATCH_LOG_GROUP_ENCRYPTED. For accuracy, * we recommend that you reference the list of supported * Config managed rules. *

      *
    • *
    • *

      * For custom rules, make sure that the keywordValue has the Custom_ prefix followed by * the custom rule name. The format of the custom rule name itself may vary. For accuracy, we recommend that you * visit the Config console to verify your custom rule name. *

      *
    • *
    *
  2. *
  3. *

    * For Security Hub: The format varies for Security Hub control names. For accuracy, we recommend that you reference * the list of supported * Security Hub controls. *

    *
  4. *
  5. *

    * For Amazon Web Services API calls: Make sure that the keywordValue is written as * serviceprefix_ActionName. For example, iam_ListGroups. For accuracy, we recommend that * you reference the list of supported API * calls. *

    *
  6. *
  7. *

    * For CloudTrail: Make sure that the keywordValue is written as serviceprefix_ActionName. * For example, cloudtrail_StartLogging. For accuracy, we recommend that you review the Amazon Web * Service prefix and action names in the Service Authorization Reference. *

    *
  8. *
*
*/ private String keywordValue; /** *

* The input method for the keyword. *

* * * @param keywordInputType * The input method for the keyword.

*