Class: Google::Apis::SecuritycenterV1::GoogleCloudSecuritycenterV2ResourceValueConfig

Inherits:
Object
  • Object
show all
Includes:
Core::Hashable, Core::JsonObjectSupport
Defined in:
lib/google/apis/securitycenter_v1/classes.rb,
lib/google/apis/securitycenter_v1/representations.rb,
lib/google/apis/securitycenter_v1/representations.rb

Overview

A resource value configuration (RVC) is a mapping configuration of user's resources to resource values. Used in Attack path simulations.

Instance Attribute Summary collapse

Instance Method Summary collapse

Constructor Details

#initialize(**args) ⇒ GoogleCloudSecuritycenterV2ResourceValueConfig

Returns a new instance of GoogleCloudSecuritycenterV2ResourceValueConfig.



8284
8285
8286
# File 'lib/google/apis/securitycenter_v1/classes.rb', line 8284

def initialize(**args)
   update!(**args)
end

Instance Attribute Details

#cloud_providerString

Cloud provider this configuration applies to Corresponds to the JSON property cloudProvider

Returns:

  • (String)


8218
8219
8220
# File 'lib/google/apis/securitycenter_v1/classes.rb', line 8218

def cloud_provider
  @cloud_provider
end

#create_timeString

Output only. Timestamp this resource value configuration was created. Corresponds to the JSON property createTime

Returns:

  • (String)


8223
8224
8225
# File 'lib/google/apis/securitycenter_v1/classes.rb', line 8223

def create_time
  @create_time
end

#descriptionString

Description of the resource value configuration. Corresponds to the JSON property description

Returns:

  • (String)


8228
8229
8230
# File 'lib/google/apis/securitycenter_v1/classes.rb', line 8228

def description
  @description
end

#nameString

Identifier. Name for the resource value configuration Corresponds to the JSON property name

Returns:

  • (String)


8233
8234
8235
# File 'lib/google/apis/securitycenter_v1/classes.rb', line 8233

def name
  @name
end

#resource_labels_selectorHash<String,String>

List of resource labels to search for, evaluated with AND. For example, " resource_labels_selector": "key": "value", "env": "prod" will match resources with labels "key": "value" AND "env": "prod" https://cloud.google. com/resource-manager/docs/creating-managing-labels Corresponds to the JSON property resourceLabelsSelector

Returns:

  • (Hash<String,String>)


8241
8242
8243
# File 'lib/google/apis/securitycenter_v1/classes.rb', line 8241

def resource_labels_selector
  @resource_labels_selector
end

#resource_typeString

Apply resource_value only to resources that match resource_type. resource_type will be checked with AND of other resources. For example, "storage. googleapis.com/Bucket" with resource_value "HIGH" will apply "HIGH" value only to "storage.googleapis.com/Bucket" resources. Corresponds to the JSON property resourceType

Returns:

  • (String)


8249
8250
8251
# File 'lib/google/apis/securitycenter_v1/classes.rb', line 8249

def resource_type
  @resource_type
end

#resource_valueString

Resource value level this expression represents Only required when there is no Sensitive Data Protection mapping in the request Corresponds to the JSON property resourceValue

Returns:

  • (String)


8255
8256
8257
# File 'lib/google/apis/securitycenter_v1/classes.rb', line 8255

def resource_value
  @resource_value
end

#scopeString

Project or folder to scope this configuration to. For example, "project/456" would apply this configuration only to resources in "project/456" scope and will be checked with AND of other resources. Corresponds to the JSON property scope

Returns:

  • (String)


8262
8263
8264
# File 'lib/google/apis/securitycenter_v1/classes.rb', line 8262

def scope
  @scope
end

#sensitive_data_protection_mappingGoogle::Apis::SecuritycenterV1::GoogleCloudSecuritycenterV2SensitiveDataProtectionMapping

Resource value mapping for Sensitive Data Protection findings If any of these mappings have a resource value that is not unspecified, the resource_value field will be ignored when reading this configuration. Corresponds to the JSON property sensitiveDataProtectionMapping



8269
8270
8271
# File 'lib/google/apis/securitycenter_v1/classes.rb', line 8269

def sensitive_data_protection_mapping
  @sensitive_data_protection_mapping
end

#tag_valuesArray<String>

Tag values combined with AND to check against. For Google Cloud resources, they are tag value IDs in the form of "tagValues/123". Example: [ "tagValues/ 123", "tagValues/456", "tagValues/789" ] https://cloud.google.com/resource- manager/docs/tags/tags-creating-and-managing Corresponds to the JSON property tagValues

Returns:

  • (Array<String>)


8277
8278
8279
# File 'lib/google/apis/securitycenter_v1/classes.rb', line 8277

def tag_values
  @tag_values
end

#update_timeString

Output only. Timestamp this resource value configuration was last updated. Corresponds to the JSON property updateTime

Returns:

  • (String)


8282
8283
8284
# File 'lib/google/apis/securitycenter_v1/classes.rb', line 8282

def update_time
  @update_time
end

Instance Method Details

#update!(**args) ⇒ Object

Update properties of this object



8289
8290
8291
8292
8293
8294
8295
8296
8297
8298
8299
8300
8301
# File 'lib/google/apis/securitycenter_v1/classes.rb', line 8289

def update!(**args)
  @cloud_provider = args[:cloud_provider] if args.key?(:cloud_provider)
  @create_time = args[:create_time] if args.key?(:create_time)
  @description = args[:description] if args.key?(:description)
  @name = args[:name] if args.key?(:name)
  @resource_labels_selector = args[:resource_labels_selector] if args.key?(:resource_labels_selector)
  @resource_type = args[:resource_type] if args.key?(:resource_type)
  @resource_value = args[:resource_value] if args.key?(:resource_value)
  @scope = args[:scope] if args.key?(:scope)
  @sensitive_data_protection_mapping = args[:sensitive_data_protection_mapping] if args.key?(:sensitive_data_protection_mapping)
  @tag_values = args[:tag_values] if args.key?(:tag_values)
  @update_time = args[:update_time] if args.key?(:update_time)
end