Class: Aws::GuardDuty::Types::Indicator

Inherits:
Struct
  • Object
show all
Includes:
Structure
Defined in:
lib/aws-sdk-guardduty/types.rb

Overview

Contains information about the indicators that include a set of signals observed in an attack sequence.

Constant Summary collapse

SENSITIVE =
[]

Instance Attribute Summary collapse

Instance Attribute Details

#keyString

Specific indicator keys observed in the attack sequence. For description of the valid values for key, see [Attack sequence finding details] in the *Amazon GuardDuty User Guide*.

[1]: docs.aws.amazon.com/guardduty/latest/ug/guardduty_findings-summary.html#guardduty-extended-threat-detection-attack-sequence-finding-details

Returns:

  • (String)


4564
4565
4566
4567
4568
4569
4570
# File 'lib/aws-sdk-guardduty/types.rb', line 4564

class Indicator < Struct.new(
  :key,
  :values,
  :title)
  SENSITIVE = []
  include Aws::Structure
end

#titleString

Title describing the indicator.

Returns:

  • (String)


4564
4565
4566
4567
4568
4569
4570
# File 'lib/aws-sdk-guardduty/types.rb', line 4564

class Indicator < Struct.new(
  :key,
  :values,
  :title)
  SENSITIVE = []
  include Aws::Structure
end

#valuesArray<String>

Values associated with each indicator key. For example, if the indicator key is ‘SUSPICIOUS_NETWORK`, then the value will be the name of the network. If the indicator key is `ATTACK_TACTIC`, then the value will be one of the MITRE tactics.

Returns:

  • (Array<String>)


4564
4565
4566
4567
4568
4569
4570
# File 'lib/aws-sdk-guardduty/types.rb', line 4564

class Indicator < Struct.new(
  :key,
  :values,
  :title)
  SENSITIVE = []
  include Aws::Structure
end