基礎 CSPM 中多雲端的支援資源和服務類型
此頁面列出在適用於雲端的 Defender 基礎雲端安全性態勢管理 (CSPM) 層中,針對 Amazon Web Services (AWS) 和 Google Cloud Platform (GCP) 所支援的資源和服務類型。
AWS 中支援的資源類型
提供者命名空間 |
資源類型名稱 |
AccessAnalyzer |
AnalyzerSummary |
ApiGateway |
階段 |
AppSync |
GraphqlApi |
ApplicationAutoScaling |
ScalableTarget |
AutoScaling |
AutoScalingGroup |
AWS |
客戶 |
AWS |
AccountInRegion |
CertificateManager |
CertificateTags |
CertificateManager |
CertificateDetail |
CertificateManager |
CertificateSummary |
CloudFormation |
StackSummary |
CloudFormation |
StackTemplate |
CloudFormation |
StackInstanceSummary |
CloudFormation |
Stack |
CloudFormation |
StackResourceSummary |
CloudFront |
DistributionConfig |
CloudFront |
DistributionSummary |
CloudFront |
DistributionTags |
CloudTrail |
EventSelector |
CloudTrail |
Trail |
CloudTrail |
TrailStatus |
CloudTrail |
TrailTags |
CloudWatch |
MetricAlarm |
CloudWatch |
MetricAlarmTags |
CloudWatchLogs |
LogGroup |
CloudWatchLogs |
MetricFilter |
CodeBuild |
Project |
CodeBuild |
ProjectName |
CodeBuild |
SourceCredentialsInfo |
ConfigService |
ConfigurationRecorder |
ConfigService |
ConfigurationRecorderStatus |
ConfigService |
DeliveryChannel |
DAX |
Cluster |
DAX |
ClusterTags |
DatabaseMigrationService |
ReplicationInstance |
DynamoDB |
ContinuousBackupsDescription |
DynamoDB |
TableDescription |
DynamoDB |
TableTags |
DynamoDB |
TableName |
EC2 |
快照式 |
EC2 |
子網路 |
EC2 |
體積 |
EC2 |
VPC |
EC2 |
VpcEndpoint |
EC2 |
VpcPeeringConnection |
EC2 |
執行個體 |
EC2 |
AccountAttribute |
EC2 |
位址 |
EC2 |
CreateVolumePermission |
EC2 |
EbsEncryptionByDefault |
EC2 |
FlowLog |
EC2 |
映像 |
EC2 |
InstanceStatus |
EC2 |
InstanceTypeInfo |
EC2 |
NetworkAcl |
EC2 |
NetworkInterface |
EC2 |
區域 |
EC2 |
保留容量 |
EC2 |
RouteTable |
EC2 |
SecurityGroup |
ECR |
映像 |
ECR |
存放庫 |
ECR |
RepositoryPolicy |
ECS |
TaskDefinition |
ECS |
ServiceArn |
ECS |
服務 |
ECS |
ClusterArn |
ECS |
TaskDefinitionTags |
ECS |
TaskDefinitionArn |
EFS |
FileSystemDescription |
EFS |
MountTargetDescription |
EKS |
Cluster |
EKS |
Nodegroup |
EKS |
NodegroupName |
EKS |
ClusterName |
EMR |
Cluster |
ElasticBeanstalk |
ConfigurationSettingsDescription |
ElasticBeanstalk |
EnvironmentDescription |
ElasticLoadBalancing |
LoadBalancerTags |
ElasticLoadBalancing |
LoadBalancer |
ElasticLoadBalancing |
LoadBalancerAttributes |
ElasticLoadBalancing |
LoadBalancerPolicy |
ElasticLoadBalancingV2 |
LoadBalancerTags |
ElasticLoadBalancingV2 |
規則 |
ElasticLoadBalancingV2 |
TargetGroup |
ElasticLoadBalancingV2 |
TargetHealthDescription |
ElasticLoadBalancingV2 |
LoadBalancer |
ElasticLoadBalancingV2 |
接聽程式 |
ElasticLoadBalancingV2 |
LoadBalancerAttribute |
Elasticsearch |
DomainInfo |
Elasticsearch |
DomainStatus |
Elasticsearch |
DomainTags |
GuardDuty |
DetectorId |
Iam |
AccountAlias |
Iam |
AttachedPolicyType |
Iam |
CredentialReport |
Iam |
群組 |
Iam |
InstanceProfile |
Iam |
MFADevice |
Iam |
PasswordPolicy |
Iam |
ServerCertificateMetadata |
Iam |
SummaryMap |
Iam |
User |
Iam |
UserPolicies |
Iam |
VirtualMFADevice |
Iam |
ManagedPolicy |
Iam |
ManagedPolicy |
Iam |
AccessKeyLastUsed |
Iam |
AccessKeyMetadata |
Iam |
PolicyVersion |
Iam |
PolicyVersion |
內部 |
Iam_EntitiesForPolicy |
內部 |
Iam_EntitiesForPolicy |
內部 |
AwsSecurityConnector |
KMS |
KeyPolicyName |
KMS |
KeyRotationStatus |
KMS |
KeyTags |
KMS |
KeyPolicy |
KMS |
KeyMetadata |
KMS |
KeyListEntry |
KMS |
AliasListEntry |
Lambda |
FunctionCodeLocation |
Lambda |
FunctionConfiguration |
Lambda |
FunctionPolicy |
Lambda |
FunctionTags |
Macie2 |
JobSummary |
Macie2 |
MacieStatus |
NetworkFirewall |
防火牆 |
NetworkFirewall |
FirewallMetadata |
NetworkFirewall |
FirewallPolicy |
NetworkFirewall |
FirewallPolicyMetadata |
NetworkFirewall |
RuleGroup |
NetworkFirewall |
RuleGroupMetadata |
RDS |
ExportTask |
RDS |
DBClusterSnapshot |
RDS |
DBSnapshot |
RDS |
DBSnapshotAttributesResult |
RDS |
EventSubscription |
RDS |
DBCluster |
RDS |
DBInstance |
RDS |
DBClusterSnapshotAttributesResult |
RedShift |
LoggingStatus |
RedShift |
參數 |
Redshift |
Cluster |
Route53 |
HostedZone |
Route53 |
ResourceRecordSet |
Route53Domains |
DomainSummary |
S3 |
S3Region |
S3 |
S3BucketTags |
S3 |
S3Bucket |
S3 |
BucketPolicy |
S3 |
BucketEncryption |
S3 |
BucketPublicAccessBlockConfiguration |
S3 |
BucketVersioning |
S3 |
LifecycleConfiguration |
S3 |
PolicyStatus |
S3 |
ReplicationConfiguration |
S3 |
S3AccessControlList |
S3 |
S3BucketLoggingConfig |
S3Control |
PublicAccessBlockConfiguration |
SNS |
訂用帳戶 |
SNS |
主題 |
SNS |
TopicAttributes |
SNS |
TopicTags |
SQS |
Queue |
SQS |
QueueAttributes |
SQS |
QueueTags |
SageMaker |
NotebookInstanceSummary |
SageMaker |
DescribeNotebookInstanceTags |
SageMaker |
DescribeNotebookInstanceResponse |
SecretsManager |
SecretResourcePolicy |
SecretsManager |
SecretListEntry |
SecretsManager |
DescribeSecretResponse |
SimpleSystemsManagement |
ParameterMetadata |
SimpleSystemsManagement |
ParameterTags |
SimpleSystemsManagement |
ResourceComplianceSummary |
SimpleSystemsManagement |
InstanceInformation |
WAF |
LoggingConfiguration |
WAF |
WebACL |
WAF |
WebACLSummary |
WAFV2 |
ApplicationLoadBalancerForWebACL |
WAFV2 |
WebACLSummary |
GCP 中支援的資源類型
提供者命名空間 |
資源類型名稱 |
ApiKeys |
機碼 |
ArtifactRegistry |
映像 |
ArtifactRegistry |
存放庫 |
ArtifactRegistry |
RepositoryPolicy |
Bigquery |
資料集 |
Bigquery |
DatasetData |
Bigquery |
Table |
Bigquery |
TablePolicy |
Bigquery |
TablesData |
CloudKMS |
CryptoKey |
CloudKMS |
CryptoKeyPolicy |
CloudKMS |
KeyRing |
CloudKMS |
KeyRingPolicy |
CloudResourceManager |
Project |
CloudResourceManager |
Ancestor |
CloudResourceManager |
AncestorPolicy |
CloudResourceManager |
EffectiveOrgPolicy |
CloudResourceManager |
Folder |
CloudResourceManager |
FolderPolicy |
CloudResourceManager |
Organization |
CloudResourceManager |
OrganizationPolicy |
CloudResourceManager |
原則 |
計算 |
執行個體 |
計算 |
BackendService |
計算 |
BackendService |
計算 |
磁碟 |
計算 |
EffectiveFirewalls |
計算 |
防火牆 |
計算 |
ForwardingRule |
計算 |
GlobalForwardingRule |
計算 |
InstanceGroup |
計算 |
InstanceGroupInstance |
計算 |
InstanceGroupManager |
計算 |
InstanceGroupManager |
計算 |
InstanceTemplate |
計算 |
MachineType |
計算 |
ManagedInstance |
計算 |
ManagedInstance |
計算 |
網路 |
計算 |
NetworkEffectiveFirewalls |
計算 |
Project |
計算 |
SslPolicy |
計算 |
Subnetwork |
計算 |
TargetHttpProxy |
計算 |
TargetHttpsProxy |
計算 |
TargetPool |
計算 |
TargetSslProxy |
計算 |
TargetTcpProxy |
計算 |
UrlMap |
容器 |
Cluster |
Dns |
ManagedZone |
Dns |
原則 |
IAM |
OrganizationRole |
IAM |
ProjectRole |
IAM |
角色 |
IAM |
ServiceAccount |
IAM |
ServiceAccountKey |
內部 |
GcpSecurityConnector |
記錄 |
AncestorLogSink |
記錄 |
LogEntry |
記錄 |
LogMetric |
記錄 |
LogSink |
監視 |
AlertPolicy |
OsConfig |
OSPolicyAssignment |
OsConfig |
OSPolicyAssignmentReport |
SQLAdmin |
DatabaseInstance |
SecretManager |
祕密 |
SecretManager |
SecretPolicy |
儲存體 |
貯體 |
儲存體 |
BucketPolicy |
深入了解