Skip to content

Commit

Permalink
fix: typo on alarm name for AdministratorSSOActivity (#8)
Browse files Browse the repository at this point in the history
  • Loading branch information
KashifSaadat authored May 7, 2024
1 parent c2544c6 commit 82226e1
Showing 1 changed file with 3 additions and 3 deletions.
6 changes: 3 additions & 3 deletions alarms.tf
Original file line number Diff line number Diff line change
Expand Up @@ -3,13 +3,13 @@
resource "aws_cloudwatch_log_metric_filter" "admin_sso_activity" {
count = var.enable_administrator_sso_activity ? 1 : 0

name = "AdminitratorSSOActivity"
name = "AdministratorSSOActivity"
pattern = "{ $.userIdentity.sessionContext.sessionIssuer.userName = AWSReservedSSO_Administrator* && $.userIdentity.invokedBy NOT EXISTS && $.eventType != \"AwsServiceEvent\" }"
log_group_name = var.cloudtrail_log_group_name


metric_transformation {
name = "AdminitratorSSOActivity"
name = "AdministratorSSOActivity"
namespace = var.alarm_namespace
value = "1"
}
Expand All @@ -20,7 +20,7 @@ resource "aws_cloudwatch_metric_alarm" "admin_sso_activity" {

alarm_actions = [local.sns_topic_arn]
alarm_description = "Monitoring if anyone has used an administrative sso role to accces the accounts will ensure individually are following least privilege."
alarm_name = "AdminitratorSSOActivity"
alarm_name = "AdministratorSSOActivity"
comparison_operator = "GreaterThanOrEqualToThreshold"
evaluation_periods = "1"
insufficient_data_actions = []
Expand Down

0 comments on commit 82226e1

Please sign in to comment.