AWS Security Hub
(securityhub)
IAM Changes
Services
2021-11-06
2021-11-06
5 new actions, 1 new resource
Additions
Actions
CreateFindingAggregator
Description:
Grants permission to create a finding aggregator, which contains the cross-Region finding aggregation configuration
Access:
Write
DeleteFindingAggregator
Description:
Grants permission to delete a finding aggregator, which disables finding aggregation across Regions
Access:
Write
Resources:
Name: finding-aggregator
Required: Yes
GetFindingAggregator
Description:
Grants permission to retrieve details for a finding aggregator, which configures finding aggregation across Regions
Access:
Read
Resources:
Name: finding-aggregator
Required: Yes
ListFindingAggregators
Description:
Grants permission to retrieve a list of finding aggregators, which contain the cross-Region finding aggregation configuration
Access:
List
UpdateFindingAggregator
Description:
Grants permission to update a finding aggregator, which contains the cross-Region finding aggregation configuration
Access:
Write
Resources:
Name: finding-aggregator
Required: Yes
Resources
finding-aggregator
Arn:
arn:${Partition}:securityhub:${Region}:${Account}:finding-aggregator/${FindingAggregatorId}