Class: Aws::GuardDuty::Types::Indicator

Inherits:
Struct
  • Object
show all
Includes:
Structure
Defined in:
lib/aws-sdk-guardduty/types.rb

Overview

Contains information about the indicators that include a set of signals observed in an attack sequence.

Constant Summary collapse

SENSITIVE =
[]

Instance Attribute Summary collapse

Instance Attribute Details

#keyString

Specific indicator keys observed in the attack sequence.

Returns:

  • (String)


4561
4562
4563
4564
4565
4566
4567
# File 'lib/aws-sdk-guardduty/types.rb', line 4561

class Indicator < Struct.new(
  :key,
  :values,
  :title)
  SENSITIVE = []
  include Aws::Structure
end

#titleString

Title describing the indicator.

Returns:

  • (String)


4561
4562
4563
4564
4565
4566
4567
# File 'lib/aws-sdk-guardduty/types.rb', line 4561

class Indicator < Struct.new(
  :key,
  :values,
  :title)
  SENSITIVE = []
  include Aws::Structure
end

#valuesArray<String>

Values associated with each indicator key. For example, if the indicator key is ‘SUSPICIOUS_NETWORK`, then the value will be the name of the network. If the indicator key is `ATTACK_TACTIC`, then the value will be one of the MITRE tactics.

For more information about the values associated with the key, see GuardDuty Extended Threat Detection in the *GuardDuty User Guide.*

Returns:

  • (Array<String>)


4561
4562
4563
4564
4565
4566
4567
# File 'lib/aws-sdk-guardduty/types.rb', line 4561

class Indicator < Struct.new(
  :key,
  :values,
  :title)
  SENSITIVE = []
  include Aws::Structure
end