Skip to main content

⭐ Repository

πŸ§ͺ test-data.json

  • ID: /ce/ca/aws/guardduty/detector-eks-audit-logs/test-data.json

Used In​

LogicPolicyFlags
🧠 prod.logic.yamlπŸŸ’πŸ›‘οΈ AWS GuardDuty Detector EKS Audit Log Monitoring is not enabled🟒🟒 x3

Content​

Open File

[
{
"expectedResult": {
"status": "INCOMPLIANT",
"conditionIndex": "199",
"conditionText": "extract('caJsonFrom__dataSourcesJson__c').jsonQueryText('kubernetes.auditLogs.status') == 'DISABLED'",
"runtimeError": null
},
"context": {
"snapshotTime": "2025-10-08T06:14:51Z"
},
"CA10__disappearanceTime__c": null,
"CA10__dataSourcesJson__c": "{\"cloudTrail\":{\"status\":\"ENABLED\"},\"dnsLogs\":{\"status\":\"ENABLED\"},\"flowLogs\":{\"status\":\"ENABLED\"},\"s3Logs\":{\"status\":\"DISABLED\"},\"kubernetes\":{\"auditLogs\":{\"status\":\"DISABLED\"}},\"malwareProtection\":{\"scanEc2InstanceWithFindings\":{\"ebsVolumes\":{\"status\":\"DISABLED\",\"reason\":null}},\"serviceRole\":null}}",
"Id": "test1"
},
{
"expectedResult": {
"status": "COMPLIANT",
"conditionIndex": "299",
"conditionText": "extract('caJsonFrom__dataSourcesJson__c').jsonQueryText('kubernetes.auditLogs.status') == 'ENABLED'",
"runtimeError": null
},
"context": {
"snapshotTime": "2025-10-08T06:14:51Z"
},
"CA10__disappearanceTime__c": null,
"CA10__dataSourcesJson__c": "{\"cloudTrail\":{\"status\":\"ENABLED\"},\"dnsLogs\":{\"status\":\"ENABLED\"},\"flowLogs\":{\"status\":\"ENABLED\"},\"s3Logs\":{\"status\":\"DISABLED\"},\"kubernetes\":{\"auditLogs\":{\"status\":\"ENABLED\"}},\"malwareProtection\":{\"scanEc2InstanceWithFindings\":{\"ebsVolumes\":{\"status\":\"DISABLED\",\"reason\":null}},\"serviceRole\":null}}",
"Id": "test2"
}
]