Copyright | (c) 2013-2023 Brendan Hay |
---|---|
License | Mozilla Public License, v. 2.0. |
Maintainer | Brendan Hay |
Stability | auto-generated |
Portability | non-portable (GHC extensions) |
Safe Haskell | Safe-Inferred |
Language | Haskell2010 |
Synopsis
- data WindowsAuditLogCreateConfiguration = WindowsAuditLogCreateConfiguration' {}
- newWindowsAuditLogCreateConfiguration :: WindowsAccessAuditLogLevel -> WindowsAccessAuditLogLevel -> WindowsAuditLogCreateConfiguration
- windowsAuditLogCreateConfiguration_auditLogDestination :: Lens' WindowsAuditLogCreateConfiguration (Maybe Text)
- windowsAuditLogCreateConfiguration_fileAccessAuditLogLevel :: Lens' WindowsAuditLogCreateConfiguration WindowsAccessAuditLogLevel
- windowsAuditLogCreateConfiguration_fileShareAccessAuditLogLevel :: Lens' WindowsAuditLogCreateConfiguration WindowsAccessAuditLogLevel
Documentation
data WindowsAuditLogCreateConfiguration Source #
The Windows file access auditing configuration used when creating or updating an Amazon FSx for Windows File Server file system.
See: newWindowsAuditLogCreateConfiguration
smart constructor.
WindowsAuditLogCreateConfiguration' | |
|
Instances
newWindowsAuditLogCreateConfiguration Source #
Create a value of WindowsAuditLogCreateConfiguration
with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:auditLogDestination:WindowsAuditLogCreateConfiguration'
, windowsAuditLogCreateConfiguration_auditLogDestination
- The Amazon Resource Name (ARN) that specifies the destination of the
audit logs.
The destination can be any Amazon CloudWatch Logs log group ARN or Amazon Kinesis Data Firehose delivery stream ARN, with the following requirements:
- The destination ARN that you provide (either CloudWatch Logs log group or Kinesis Data Firehose delivery stream) must be in the same Amazon Web Services partition, Amazon Web Services Region, and Amazon Web Services account as your Amazon FSx file system.
- The name of the Amazon CloudWatch Logs log group must begin with the
/aws/fsx
prefix. The name of the Amazon Kinesis Data Firehouse delivery stream must begin with theaws-fsx
prefix. - If you do not provide a destination in
AuditLogDestination
, Amazon FSx will create and use a log stream in the CloudWatch Logs/aws/fsx/windows
log group. - If
AuditLogDestination
is provided and the resource does not exist, the request will fail with aBadRequest
error. - If
FileAccessAuditLogLevel
andFileShareAccessAuditLogLevel
are both set toDISABLED
, you cannot specify a destination inAuditLogDestination
.
$sel:fileAccessAuditLogLevel:WindowsAuditLogCreateConfiguration'
, windowsAuditLogCreateConfiguration_fileAccessAuditLogLevel
- Sets which attempt type is logged by Amazon FSx for file and folder
accesses.
SUCCESS_ONLY
- only successful attempts to access files or folders are logged.FAILURE_ONLY
- only failed attempts to access files or folders are logged.SUCCESS_AND_FAILURE
- both successful attempts and failed attempts to access files or folders are logged.DISABLED
- access auditing of files and folders is turned off.
$sel:fileShareAccessAuditLogLevel:WindowsAuditLogCreateConfiguration'
, windowsAuditLogCreateConfiguration_fileShareAccessAuditLogLevel
- Sets which attempt type is logged by Amazon FSx for file share accesses.
SUCCESS_ONLY
- only successful attempts to access file shares are logged.FAILURE_ONLY
- only failed attempts to access file shares are logged.SUCCESS_AND_FAILURE
- both successful attempts and failed attempts to access file shares are logged.DISABLED
- access auditing of file shares is turned off.
windowsAuditLogCreateConfiguration_auditLogDestination :: Lens' WindowsAuditLogCreateConfiguration (Maybe Text) Source #
The Amazon Resource Name (ARN) that specifies the destination of the audit logs.
The destination can be any Amazon CloudWatch Logs log group ARN or Amazon Kinesis Data Firehose delivery stream ARN, with the following requirements:
- The destination ARN that you provide (either CloudWatch Logs log group or Kinesis Data Firehose delivery stream) must be in the same Amazon Web Services partition, Amazon Web Services Region, and Amazon Web Services account as your Amazon FSx file system.
- The name of the Amazon CloudWatch Logs log group must begin with the
/aws/fsx
prefix. The name of the Amazon Kinesis Data Firehouse delivery stream must begin with theaws-fsx
prefix. - If you do not provide a destination in
AuditLogDestination
, Amazon FSx will create and use a log stream in the CloudWatch Logs/aws/fsx/windows
log group. - If
AuditLogDestination
is provided and the resource does not exist, the request will fail with aBadRequest
error. - If
FileAccessAuditLogLevel
andFileShareAccessAuditLogLevel
are both set toDISABLED
, you cannot specify a destination inAuditLogDestination
.
windowsAuditLogCreateConfiguration_fileAccessAuditLogLevel :: Lens' WindowsAuditLogCreateConfiguration WindowsAccessAuditLogLevel Source #
Sets which attempt type is logged by Amazon FSx for file and folder accesses.
SUCCESS_ONLY
- only successful attempts to access files or folders are logged.FAILURE_ONLY
- only failed attempts to access files or folders are logged.SUCCESS_AND_FAILURE
- both successful attempts and failed attempts to access files or folders are logged.DISABLED
- access auditing of files and folders is turned off.
windowsAuditLogCreateConfiguration_fileShareAccessAuditLogLevel :: Lens' WindowsAuditLogCreateConfiguration WindowsAccessAuditLogLevel Source #
Sets which attempt type is logged by Amazon FSx for file share accesses.
SUCCESS_ONLY
- only successful attempts to access file shares are logged.FAILURE_ONLY
- only failed attempts to access file shares are logged.SUCCESS_AND_FAILURE
- both successful attempts and failed attempts to access file shares are logged.DISABLED
- access auditing of file shares is turned off.