Skip to content

GuardDuty Detector

Threat detection across CloudTrail, VPC flow logs, DNS, S3, EKS, RDS, Lambda.

security
category
9
settings
0
inputs
1
outputs
SettingTypeRequiredDefault
Enable detectorToggletrue
Publishing frequency
Options: 15 minutes, 1 hour, 6 hours
ChoiceSIX_HOURS
S3 protectionTogglefalse
EKS audit logsTogglefalse
Malware protection (EC2/Lambda)Togglefalse
RDS login eventsTogglefalse
EKS runtime monitoringTogglefalse
Lambda network logsTogglefalse
TagsKey–value
SocketDirectionAcceptsTerraform arg
Findings (EventBridge / SecHub)Outputany