terraform.aws-baseline-infra/modules/security_identity_compliance/security_hub/main.tf

13 lines
538 B
HCL

data aws_region this-region {}
resource "aws_securityhub_account" "sh-account" {}
resource "aws_securityhub_standards_subscription" "cis" {
depends_on = [aws_securityhub_account.sh-account]
standards_arn = "arn:aws:securityhub:::ruleset/cis-aws-foundations-benchmark/v/1.2.0"
}
resource "aws_securityhub_standards_subscription" "aws" {
depends_on = [aws_securityhub_account.sh-account]
standards_arn = "arn:aws:securityhub:${data.aws_region.this-region.name}::standards/aws-foundational-security-best-practices/v/1.0.0"
}