내용으로 건너뛰기

Receiving only 16 default findings from security hub

0

I have enabled security hub in my account but I am not getting more findings from security hub. I have enabled all 5 security standards and have also checked IAM policies....Not getting findings from even ec2 or s3...Only getting 16 default findings..please help me..Thank you

2개 답변
0

Have you enabled and configured AWS config, Inspector and GuardDuty across your regions of choice regions?

Security Hub collects security data from across AWS accounts, services, and supported third-party partner products and helps you analyze your security trends and identify the highest priority security issues.

It does not go and perform checks or analysis of the estate.

전문가
답변함 3년 전
  • Not yet enabled above mentioned services but also not received any findings on ec2, s3 etc ..Also not getting security score . Though zero score also not showing

  • Unless you enable the above you will not receive any findings

  • According to "Prerequisites and recommendations", Inspector and Guardduty are options. We can integrate findings of those Services, but not necessary.

    Security Hub requires that AWS Config is enabled in all accounts that have Security Hub enabled. Security Hub controls use AWS Config rules to complete security checks.

    https://docs.aws.amazon.com/securityhub/latest/userguide/securityhub-setup-prereqs.html

0

Hi. What you should do is enable AWS Config.Furthermore, I will recommend you to disable and re-enable all standards after that to see scores asap.

https://docs.aws.amazon.com/securityhub/latest/userguide/securityhub-prereq-config.html

Security Hub recommends that you enable resource recording in AWS Config before you enable Security Hub standards. If Security Hub tries to run security checks when resource recording is not enabled, the checks return errors.

If you enable AWS Config after you enable a standard, Security Hub still creates the AWS Config rules, but only if you enable AWS Config within 31 days after you enable the standard. If you do not enable AWS Config within 31 days, then you must disable and re-enable the standard after you enable AWS Config

If you have trouble when enabling AWS Config, check the following link.

https://repost.aws/knowledge-center/config-error-security-hub

전문가
답변함 3년 전

로그인하지 않았습니다. 로그인해야 답변을 게시할 수 있습니다.

좋은 답변은 질문에 명확하게 답하고 건설적인 피드백을 제공하며 질문자의 전문적인 성장을 장려합니다.