--- inputType: "CA10__CaAwsLoadBalancer__c" testData: - file: "test-data.json" conditions: - status: "COMPLIANT" currentStateMessage: "The automated provisioning source is AWS CloudFormation." check: TAG_EXISTS: name: BYTES: "aws:cloudformation:logical-id" - status: "COMPLIANT" currentStateMessage: "The automated provisioning source is AWS CloudFormation." check: TAG_EXISTS: name: BYTES: "aws:cloudformation:stack-id" - status: "COMPLIANT" currentStateMessage: "The automated provisioning source is AWS CloudFormation." check: TAG_EXISTS: name: BYTES: "aws:cloudformation:stack-name" - status: "COMPLIANT" currentStateMessage: "The automated provisioning source is AWS Load Balancer Controller." check: AND: args: - TAG_EXISTS: name: BYTES: "elbv2.k8s.aws/cluster" - TAG_EXISTS: name: BYTES: "ingress.k8s.aws/stack" - TAG_EXISTS: name: BYTES: "ingress.k8s.aws/resource" - status: "COMPLIANT" currentStateMessage: "The automated provisioning source is AWS Load Balancer Controller." check: AND: args: - TAG_EXISTS: name: BYTES: "elbv2.k8s.aws/cluster" - TAG_EXISTS: name: BYTES: "service.k8s.aws/stack" - TAG_EXISTS: name: BYTES: "service.k8s.aws/resource" - status: "COMPLIANT" currentStateMessage: "The automated provisioning source is AWS Service Catalog." check: TAG_EXISTS: name: BYTES: "aws:servicecatalog:portfolioArn" - status: "COMPLIANT" currentStateMessage: "The automated provisioning source is AWS Service Catalog." check: TAG_EXISTS: name: BYTES: "aws:servicecatalog:productArn" - status: "COMPLIANT" currentStateMessage: "The automated provisioning source is AWS Service Catalog." check: TAG_EXISTS: name: BYTES: "aws:servicecatalog:provisioningPrincipalArn" - status: "COMPLIANT" currentStateMessage: "The automated provisioning source is AWS Service Catalog." check: TAG_EXISTS: name: BYTES: "aws:servicecatalog:provisionedProductArn" - status: "COMPLIANT" currentStateMessage: "The automated provisioning source is AWS Service Catalog." check: TAG_EXISTS: name: BYTES: "aws:servicecatalog:provisioningArtifactIdentifier" - status: "COMPLIANT" currentStateMessage: "The automated provisioning source is AWS Elastic Beanstalk." check: AND: args: - TAG_EXISTS: name: BYTES: "elasticbeanstalk:environment-name" - TAG_EXISTS: name: BYTES: "elasticbeanstalk:environment-id" otherwise: status: "INCOMPLIANT" currentStateMessage: "The automated provisioning source is not identified by supported AWS-managed tag signals." remediationMessage: "Review the automated provisioning source, ownership, and expected management workflow."