You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
* <p>Creates or updates a resource policy allowing other Amazon Web Services services to put log events to this account, such as Amazon Route 53. This API has the following restrictions:</p>
30
+
* <p>Creates or updates a resource policy allowing other Amazon Web Services services to put
31
+
* log events to this account, such as Amazon Route 53. This API has the following
32
+
* restrictions:</p>
31
33
* <ul>
32
34
* <li>
33
35
* <p>
34
-
* <b>Supported actions</b> - Policy only supports <code>logs:PutLogEvents</code> and <code>logs:CreateLogStream </code> actions</p>
36
+
* <b>Supported actions</b> - Policy only supports
37
+
* <code>logs:PutLogEvents</code> and <code>logs:CreateLogStream </code> actions</p>
35
38
* </li>
36
39
* <li>
37
40
* <p>
38
-
* <b>Supported principals</b> - Policy only applies when operations are invoked by Amazon Web Services service principals (not IAM users, roles, or cross-account principals</p>
41
+
* <b>Supported principals</b> - Policy only applies when
42
+
* operations are invoked by Amazon Web Services service principals (not IAM
43
+
* users, roles, or cross-account principals</p>
39
44
* </li>
40
45
* <li>
41
46
* <p>
42
-
* <b>Policy limits</b> - An account can have a maximum of 10 policies without resourceARN and one per LogGroup resourceARN</p>
47
+
* <b>Policy limits</b> - An account can have a maximum of 10
48
+
* policies without resourceARN and one per LogGroup resourceARN</p>
43
49
* </li>
44
50
* </ul>
45
51
* <important>
46
-
* <p>Resource policies with actions invoked by non-Amazon Web Services service principals (such as IAM users, roles, or other Amazon Web Services accounts) will not be enforced. For access control involving these principals, use the IAM policies.</p>
52
+
* <p>Resource policies with actions invoked by non-Amazon Web Services service principals
53
+
* (such as IAM users, roles, or other Amazon Web Services accounts) will not be
54
+
* enforced. For access control involving these principals, use the IAM
55
+
* policies.</p>
47
56
* </important>
48
57
* @example
49
58
* Use a bare-bones client and the command you need to make an API call.
* <p>The filter expression that specifies which log events are processed by this metric filter based on system fields. Returns the <code>fieldSelectionCriteria</code> value if it was specified when the metric filter was created.</p>
2892
+
* <p>The filter expression that specifies which log events are processed by this metric filter
2893
+
* based on system fields. Returns the <code>fieldSelectionCriteria</code> value if it was
2894
+
* specified when the metric filter was created.</p>
2893
2895
* @public
2894
2896
*/
2895
2897
fieldSelectionCriteria?: string|undefined;
2896
2898
2897
2899
/**
2898
-
* <p>The list of system fields that are emitted as additional dimensions in the generated metrics. Returns the <code>emitSystemFieldDimensions</code> value if it was specified when the metric filter was created.</p>
2900
+
* <p>The list of system fields that are emitted as additional dimensions in the generated
2901
+
* metrics. Returns the <code>emitSystemFieldDimensions</code> value if it was specified when the
* <p>The filter expression that specifies which log events are processed by this subscription filter based on system fields. Returns the <code>fieldSelectionCriteria</code> value if it was specified when the subscription filter was created.</p>
3317
+
* <p>The filter expression that specifies which log events are processed by this subscription
3318
+
* filter based on system fields. Returns the <code>fieldSelectionCriteria</code> value if it was
3319
+
* specified when the subscription filter was created.</p>
3314
3320
* @public
3315
3321
*/
3316
3322
fieldSelectionCriteria?: string|undefined;
3317
3323
3318
3324
/**
3319
-
* <p>The list of system fields that are included in the log events sent to the subscription destination. Returns the <code>emitSystemFields</code> value if it was specified when the subscription filter was created.</p>
3325
+
* <p>The list of system fields that are included in the log events sent to the subscription
3326
+
* destination. Returns the <code>emitSystemFields</code> value if it was specified when the
* <p>The list of destinations where the scheduled query results were delivered for this execution. This includes S3 buckets and EventBridge targets configured for the scheduled query.</p>
4932
+
* <p>The list of destinations where the scheduled query results were delivered for this execution. This includes S3 buckets configured for the scheduled query.</p>
* <p>This processor converts logs into <a href="https://ocsf.io">Open Cybersecurity Schema
5240
5248
* Framework (OCSF)</a> events.</p>
5241
-
* <p>For more information about this processor including examples, see <a href="https://docs.aws.amazon.com/AmazonCloudWatch/latest/logs/CloudWatch-Logs-Transformation.html#CloudWatch-Logs-Transformation-parseToOCSF"> parseToOSCF</a> in the <i>CloudWatch Logs User Guide</i>.</p>
5249
+
* <p>For more information about this processor including examples, see <a href="https://docs.aws.amazon.com/AmazonCloudWatch/latest/logs/CloudWatch-Logs-Transformation.html#CloudWatch-Logs-Transformation-parseToOCSF">parseToOCSF</a> in the <i>CloudWatch Logs User Guide</i>.</p>
* <p>A filter expression that specifies which log events should be processed by this metric filter based on system fields such as source account and source region. Uses selection criteria syntax with operators like <code>=</code>, <code>!=</code>, <code>AND</code>, <code>OR</code>, <code>IN</code>, <code>NOT IN</code>. Example: <code>@aws.region = "us-east-1"</code> or <code>@aws.account IN ["123456789012", "987654321098"]</code>. Maximum length: 2000 characters.</p>
7184
+
* <p>A filter expression that specifies which log events should be processed by this metric
7185
+
* filter based on system fields such as source account and source region. Uses selection
7186
+
* criteria syntax with operators like <code>=</code>, <code>!=</code>, <code>AND</code>,
* "us-east-1"</code> or <code>@aws.account IN ["123456789012", "987654321098"]</code>. Maximum
7189
+
* length: 2000 characters.</p>
7163
7190
* @public
7164
7191
*/
7165
7192
fieldSelectionCriteria?: string|undefined;
7166
7193
7167
7194
/**
7168
-
* <p>A list of system fields to emit as additional dimensions in the generated metrics. Valid values are <code>@aws.account</code> and <code>@aws.region</code>. These dimensions help identify the source of centralized log data and count toward the total dimension limit for metric filters.</p>
7195
+
* <p>A list of system fields to emit as additional dimensions in the generated metrics. Valid
7196
+
* values are <code>@aws.account</code> and <code>@aws.region</code>. These dimensions help
7197
+
* identify the source of centralized log data and count toward the total dimension limit for
* <p>A filter expression that specifies which log events should be processed by this subscription filter based on system fields such as source account and source region. Uses selection criteria syntax with operators like <code>=</code>, <code>!=</code>, <code>AND</code>, <code>OR</code>, <code>IN</code>, <code>NOT IN</code>. Example: <code>@aws.region NOT IN ["cn-north-1"]</code> or <code>@aws.account = "123456789012" AND @aws.region = "us-east-1"</code>. Maximum length: 2000 characters.</p>
7440
+
* <p>A filter expression that specifies which log events should be processed by this
7441
+
* subscription filter based on system fields such as source account and source region. Uses
7442
+
* selection criteria syntax with operators like <code>=</code>, <code>!=</code>,
* <code>@aws.region NOT IN ["cn-north-1"]</code> or <code>@aws.account = "123456789012" AND
7445
+
* @aws.region = "us-east-1"</code>. Maximum length: 2000 characters.</p>
7411
7446
* @public
7412
7447
*/
7413
7448
fieldSelectionCriteria?: string|undefined;
7414
7449
7415
7450
/**
7416
-
* <p>A list of system fields to include in the log events sent to the subscription destination. Valid values are <code>@aws.account</code> and <code>@aws.region</code>. These fields provide source information for centralized log data in the forwarded payload.</p>
7451
+
* <p>A list of system fields to include in the log events sent to the subscription destination.
7452
+
* Valid values are <code>@aws.account</code> and <code>@aws.region</code>. These fields provide
7453
+
* source information for centralized log data in the forwarded payload.</p>
0 commit comments