library
turbot/aws_thrifty
Variables
The AWS Thrifty mod has 139 variables:
Name | Default | Description |
---|---|---|
approvers |
| List of notifiers to be used for obtaining action/approval decisions, when empty list will perform the default response associated with the detection. |
database | postgres://steampipe@localhost:9193/steampipe | Steampipe database connection string. |
dynamodb_tables_with_stale_data_default_action | notify | The default action to use for the detected item, used if no input is provided. |
dynamodb_tables_with_stale_data_enabled_actions |
| The list of enabled actions to provide to approvers for selection. |
dynamodb_tables_with_stale_data_max_days | 90 | The maximum number of days DynamoDB table stale data can be retained. |
dynamodb_tables_with_stale_data_trigger_enabled | false | If true, the trigger is enabled. |
dynamodb_tables_with_stale_data_trigger_schedule | 15m | The schedule on which to run the trigger if enabled. |
ebs_snapshots_exceeding_max_age_days | 90 | The maximum number of days EBS snapshots can be retained. |
ebs_snapshots_exceeding_max_age_default_action | notify | The default action to use for the detected item, used if no input is provided. |
ebs_snapshots_exceeding_max_age_enabled_actions |
| The list of enabled actions to provide to approvers for selection. |
ebs_snapshots_exceeding_max_age_trigger_enabled | false | If true, the trigger is enabled. |
ebs_snapshots_exceeding_max_age_trigger_schedule | 15m | The schedule on which to run the trigger if enabled. |
ebs_volumes_attached_to_stopped_instances_default_action | notify | The default action to use for the detected item, used if no input is provided. |
ebs_volumes_attached_to_stopped_instances_enabled_actions |
| The list of enabled actions to provide to approvers for selection. |
ebs_volumes_attached_to_stopped_instances_trigger_enabled | false | If true, the trigger is enabled. |
ebs_volumes_attached_to_stopped_instances_trigger_schedule | 15m | The schedule on which to run the trigger if enabled. |
ebs_volumes_exceeding_max_size | 100 | The maximum size (GB) allowed for volumes. |
ebs_volumes_exceeding_max_size_default_action | notify | The default action to use for the detected item, used if no input is provided. |
ebs_volumes_exceeding_max_size_enabled_actions |
| The list of enabled actions to provide to approvers for selection. |
ebs_volumes_exceeding_max_size_trigger_enabled | false | If true, the trigger is enabled. |
ebs_volumes_exceeding_max_size_trigger_schedule | 15m | The schedule on which to run the trigger if enabled. |
ebs_volumes_if_unattached_default_action | notify | The default action to use for the detected item, used if no input is provided. |
ebs_volumes_if_unattached_enabled_actions |
| The list of enabled actions to provide to approvers for selection. |
ebs_volumes_if_unattached_trigger_enabled | false | If true, the trigger is enabled. |
ebs_volumes_if_unattached_trigger_schedule | 15m | The schedule on which to run the trigger if enabled. |
ebs_volumes_using_gp2_default_action | notify | The default action to use for the detected item, used if no input is provided. |
ebs_volumes_using_gp2_enabled_actions |
| The list of enabled actions to provide to approvers for selection. |
ebs_volumes_using_gp2_trigger_enabled | false | If true, the trigger is enabled. |
ebs_volumes_using_gp2_trigger_schedule | 15m | The schedule on which to run the trigger if enabled. |
ebs_volumes_using_io1_default_action | notify | The default action to use for the detected item, used if no input is provided. |
ebs_volumes_using_io1_enabled_actions |
| The list of enabled actions to provide to approvers for selection. |
ebs_volumes_using_io1_trigger_enabled | false | If true, the trigger is enabled. |
ebs_volumes_using_io1_trigger_schedule | 15m | The schedule on which to run the trigger if enabled. |
ebs_volumes_with_low_iops_default_action | notify | The default action to use for the detected item, used if no input is provided. |
ebs_volumes_with_low_iops_enabled_actions |
| The list of enabled actions to provide to approvers for selection. |
ebs_volumes_with_low_iops_trigger_enabled | false | If true, the trigger is enabled. |
ebs_volumes_with_low_iops_trigger_schedule | 15m | The schedule on which to run the trigger if enabled. |
ebs_volumes_with_low_usage_default_action | notify | The default action to use for the detected item, used if no input is provided. |
ebs_volumes_with_low_usage_enabled_actions |
| The list of enabled actions to provide to approvers for selection. |
ebs_volumes_with_low_usage_min | 100 | The number of average read/write ops required for volumes to be considered infrequently used. |
ebs_volumes_with_low_usage_trigger_enabled | false | If true, the trigger is enabled. |
ebs_volumes_with_low_usage_trigger_schedule | 15m | The schedule on which to run the trigger if enabled. |
ec2_application_load_balancers_if_unused_default_action | notify | The default action to use for the detected item, used if no input is provided. |
ec2_application_load_balancers_if_unused_enabled_actions |
| The list of enabled actions to provide to approvers for selection. |
ec2_application_load_balancers_if_unused_trigger_enabled | false | If true, the trigger is enabled. |
ec2_application_load_balancers_if_unused_trigger_schedule | 15m | The schedule on which to run the trigger if enabled. |
ec2_classic_load_balancers_if_unused_default_action | notify | The default action to use for the detected item, used if no input is provided. |
ec2_classic_load_balancers_if_unused_enabled_actions |
| The list of enabled actions to provide to approvers for selection. |
ec2_classic_load_balancers_if_unused_trigger_enabled | false | If true, the trigger is enabled. |
ec2_classic_load_balancers_if_unused_trigger_schedule | 15m | The schedule on which to run the trigger if enabled. |
ec2_gateway_load_balancers_if_unused_default_action | notify | The default action to use for the detected item, used if no input is provided. |
ec2_gateway_load_balancers_if_unused_enabled_actions |
| The list of enabled actions to provide to approvers for selection. |
ec2_gateway_load_balancers_if_unused_trigger_enabled | false | If true, the trigger is enabled. |
ec2_gateway_load_balancers_if_unused_trigger_schedule | 15m | The schedule on which to run the trigger if enabled. |
ec2_instances_exceeding_max_age_days | 90 | The maximum number of days EC2 instances can be retained. |
ec2_instances_exceeding_max_age_default_action | notify | The default action to use for the detected item, used if no input is provided. |
ec2_instances_exceeding_max_age_enabled_actions |
| The list of enabled actions to provide to approvers for selection. |
ec2_instances_exceeding_max_age_trigger_enabled | false | If true, the trigger is enabled. |
ec2_instances_exceeding_max_age_trigger_schedule | 15m | The schedule on which to run the trigger if enabled. |
ec2_instances_large_allowed_types |
| A list of allowed instance types. PostgreSQL wildcards are supported. |
ec2_instances_large_default_action | notify | The default action to use for the detected item, used if no input is provided. |
ec2_instances_large_enabled_actions |
| The list of enabled actions to provide to approvers for selection. |
ec2_instances_large_trigger_enabled | false | If true, the trigger is enabled. |
ec2_instances_large_trigger_schedule | 15m | The schedule on which to run the trigger if enabled. |
ec2_instances_of_older_generation_default_action | notify | The default action to use for the detected item, used if no input is provided. |
ec2_instances_of_older_generation_enabled_actions |
| The list of enabled actions to provide to approvers for selection. |
ec2_instances_of_older_generation_trigger_enabled | false | If true, the trigger is enabled. |
ec2_instances_of_older_generation_trigger_schedule | 15m | The schedule on which to run the trigger if enabled. |
ec2_instances_without_graviton_default_action | notify | The default action to use for the detected item, used if no input is provided. |
ec2_instances_without_graviton_enabled_actions |
| The list of enabled actions to provide to approvers for selection. |
ec2_instances_without_graviton_trigger_enabled | false | If true, the trigger is enabled. |
ec2_instances_without_graviton_trigger_schedule | 15m | The schedule on which to run the trigger if enabled. |
ec2_network_load_balancers_if_unused_default_action | notify | The default action to use for the detected item, used if no input is provided. |
ec2_network_load_balancers_if_unused_enabled_actions |
| The list of enabled actions to provide to approvers for selection. |
ec2_network_load_balancers_if_unused_trigger_enabled | false | If true, the trigger is enabled. |
ec2_network_load_balancers_if_unused_trigger_schedule | 15m | The schedule on which to run the trigger if enabled. |
eks_node_groups_without_graviton_default_action | notify | The default action to use for the detected item, used if no input is provided. |
eks_node_groups_without_graviton_enabled_actions |
| The list of enabled actions to provide to approvers for selection. |
eks_node_groups_without_graviton_trigger_enabled | false | If true, the trigger is enabled. |
eks_node_groups_without_graviton_trigger_schedule | 15m | The schedule on which to run the trigger if enabled. |
elasticache_clusters_exceeding_max_age_days | 90 | The maximum number of days Elasticache clusters can be retained. |
elasticache_clusters_exceeding_max_age_default_action | notify | The default action to use for the detected item, used if no input is provided. |
elasticache_clusters_exceeding_max_age_enabled_actions |
| The list of enabled actions to provide to approvers for selection. |
elasticache_clusters_exceeding_max_age_trigger_enabled | false | If true, the trigger is enabled. |
elasticache_clusters_exceeding_max_age_trigger_schedule | 15m | The schedule on which to run the trigger if enabled. |
emr_clusters_idle_30_mins_default_action | notify | The default action to use for the detected item, used if no input is provided. |
emr_clusters_idle_30_mins_enabled_actions |
| The response options given to approvers to determine the chosen response. |
emr_clusters_idle_30_mins_trigger_enabled | false | If true, the trigger is enabled. |
emr_clusters_idle_30_mins_trigger_schedule | 15m | The schedule on which to run the trigger if enabled. |
lambda_functions_without_graviton_default_action | notify | The default action to use for the detected item, used if no input is provided. |
lambda_functions_without_graviton_enabled_actions |
| The list of enabled actions to provide to approvers for selection. |
lambda_functions_without_graviton_trigger_enabled | false | If true, the trigger is enabled. |
lambda_functions_without_graviton_trigger_schedule | 15m | The schedule on which to run the trigger if enabled. |
max_concurrency | 1 | The maximum concurrency to use for responding to detection items. |
notification_level | info | The verbosity level of notification messages to send. Valid options are 'verbose', 'info', 'error'. |
notifier | default | The name of the notifier to use for sending notification messages. |
rds_db_instances_exceeding_max_age_days | 90 | The maximum number of days DB instances are allowed to run. |
rds_db_instances_exceeding_max_age_default_action | notify | The default action to use for the detected item, used if no input is provided. |
rds_db_instances_exceeding_max_age_enabled_actions |
| The list of enabled actions to provide to approvers for selection. |
rds_db_instances_exceeding_max_age_trigger_enabled | false | If true, the trigger is enabled. |
rds_db_instances_exceeding_max_age_trigger_schedule | 15m | The schedule on which to run the trigger if enabled. |
rds_db_instances_of_older_generation_default_action | notify | The default action to use for the detected item, used if no input is provided. |
rds_db_instances_of_older_generation_enabled_actions |
| The list of enabled actions to provide to approvers for selection. |
rds_db_instances_of_older_generation_trigger_enabled | false | If true, the trigger is enabled. |
rds_db_instances_of_older_generation_trigger_schedule | 15m | The schedule on which to run the trigger if enabled. |
rds_db_instances_with_low_connection_count_default_action | notify | The default action to use for the detected item, used if no input is provided. |
rds_db_instances_with_low_connection_count_enabled_actions |
| The list of enabled actions to provide to approvers for selection. |
rds_db_instances_with_low_connection_count_trigger_enabled | false | If true, the trigger is enabled. |
rds_db_instances_with_low_connection_count_trigger_schedule | 15m | The schedule on which to run the trigger if enabled. |
rds_db_instances_without_graviton_default_action | notify | The default action to use for the detected item, used if no input is provided. |
rds_db_instances_without_graviton_enabled_actions |
| The list of enabled actions to provide to approvers for selection. |
rds_db_instances_without_graviton_trigger_enabled | false | If true, the trigger is enabled. |
rds_db_instances_without_graviton_trigger_schedule | 15m | The schedule on which to run the trigger if enabled. |
route53_health_checks_if_unused_default_action | notify | The default action to use for the detected item, used if no input is provided. |
route53_health_checks_if_unused_enabled_actions |
| The list of enabled actions to provide to approvers for selection. |
route53_health_checks_if_unused_trigger_enabled | false | If true, the trigger is enabled. |
route53_health_checks_if_unused_trigger_schedule | 15m | The schedule on which to run the trigger if enabled. |
route53_records_with_lower_ttl_default_action | notify | The default action to use for the detected item, used if no input is provided. |
route53_records_with_lower_ttl_enabled_actions |
| The list of enabled actions to provide to approvers for selection. |
route53_records_with_lower_ttl_trigger_enabled | false | If true, the trigger is enabled. |
route53_records_with_lower_ttl_trigger_schedule | 15m | The schedule on which to run the trigger if enabled. |
s3_buckets_without_lifecycle_policy_default_action | notify | The default action to use for the detected item, used if no input is provided. |
s3_buckets_without_lifecycle_policy_default_policy | { "Rules": [ { "ID": "Transition to STANDARD_IA after 90 days", "Status": "Enabled", "Filter": {}, "Transitions": [ { "Days": 90, "StorageClass": "STANDARD_IA" } ] }, { "ID": "Transition to GLACIER after 180 days", "Status": "Enabled", "Filter": {}, "Transitions": [ { "Days": 180, "StorageClass": "GLACIER" } ] }, { "ID": "Transition to DEEP_ARCHIVE after 365 days", "Status": "Enabled", "Filter": {}, "Transitions": [ { "Days": 365, "StorageClass": "DEEP_ARCHIVE" } ] } ] } | The default S3 bucket lifecycle policy to apply |
s3_buckets_without_lifecycle_policy_enabled_actions |
| The list of enabled actions to provide to approvers for selection. |
s3_buckets_without_lifecycle_policy_trigger_enabled | false | If true, the trigger is enabled. |
s3_buckets_without_lifecycle_policy_trigger_schedule | 15m | The schedule on which to run the trigger if enabled. |
secretsmanager_secrets_if_unused_days | 90 | The default number of days secrets manager secrets to be considered in-use. |
secretsmanager_secrets_if_unused_default_action | notify | The default action to use for the detected item, used if no input is provided. |
secretsmanager_secrets_if_unused_enabled_actions |
| The list of enabled actions to provide to approvers for selection. |
secretsmanager_secrets_if_unused_trigger_enabled | false | If true, the trigger is enabled. |
secretsmanager_secrets_if_unused_trigger_schedule | 15m | The schedule on which to run the trigger if enabled. |
vpc_eips_if_unattached_default_action | notify | The default action to use for the detected item, used if no input is provided. |
vpc_eips_if_unattached_enabled_actions |
| The list of enabled actions to provide to approvers for selection. |
vpc_eips_if_unattached_trigger_enabled | false | If true, the trigger is enabled. |
vpc_eips_if_unattached_trigger_schedule | 15m | The schedule on which to run the trigger if enabled. |
vpc_nat_gateways_if_unused_default_action | notify | The default action to use for the detected item, used if no input is provided. |
vpc_nat_gateways_if_unused_enabled_actions |
| The list of enabled actions to provide to approvers for selection. |
vpc_nat_gateways_if_unused_trigger_enabled | false | If true, the trigger is enabled. |
vpc_nat_gateways_if_unused_trigger_schedule | 15m | The schedule on which to run the trigger if enabled. |