Supressed or Hide Items on Security Hub

0

Hi!

Is it possible to hide or supressed specific items automatically on Security Hub with tags? We have some resources based on environment tags, that I wouldn't like to see this finding, like a RDS Multi AZ on DEV database.

I tested the Automations configuration on Security Hub, but filtering, he retrieve only GuardDuty items, I don't why the resource tag items finding on Security Hub are get.

Thanks!

已提問 8 個月前檢視次數 309 次
3 個答案
0

If using the CLI is acceptable to your use case, this documentation shows how to filter based on ResourceTags:
https://docs.aws.amazon.com/cli/latest/reference/securityhub/get-findings.html.

profile pictureAWS
已回答 8 個月前
  • Doesn't work, I tested filtering by tag (with CLI), but he retrieves only GuardDuty finding resources, the Security Hub findings, doesn't have tags.

    I opened a case and AWS confirmed that :-(

    I think that I want it's a little bit simple, to build a automation way to hide or suppress some resources or controls that I don't want to see (preferably using tags based).

0

I did see a feature request for using resource tags within AWS Security Hub has been filed, but there isn't a timeline for release yet. You can monitor the AWS What's New Blog for the latest news though.

profile pictureAWS
已回答 7 個月前
0

I encountered a similar problem with our Security Hub automation rules. Regrettably, I discovered that Security Hub doesn't offer support for tag-based automation during my interaction with AWS support

已回答 7 個月前

您尚未登入。 登入 去張貼答案。

一個好的回答可以清楚地回答問題並提供建設性的意見回饋,同時有助於提問者的專業成長。

回答問題指南