Interface DetectiveClient
- All Superinterfaces:
AutoCloseable,AwsClient,SdkAutoCloseable,SdkClient
builder() method.
Detective uses machine learning and purpose-built visualizations to help you to analyze and investigate security issues across your Amazon Web Services (Amazon Web Services) workloads. Detective automatically extracts time-based events such as login attempts, API calls, and network traffic from CloudTrail and Amazon Virtual Private Cloud (Amazon VPC) flow logs. It also extracts findings detected by Amazon GuardDuty.
The Detective API primarily supports the creation and management of behavior graphs. A behavior graph contains the extracted data from a set of member accounts, and is created and managed by an administrator account.
To add a member account to the behavior graph, the administrator account sends an invitation to the account. When the account accepts the invitation, it becomes a member account in the behavior graph.
Detective is also integrated with Organizations. The organization management account designates the Detective administrator account for the organization. That account becomes the administrator account for the organization behavior graph. The Detective administrator account is also the delegated administrator account for Detective in Organizations.
The Detective administrator account can enable any organization account as a member account in the organization behavior graph. The organization accounts do not receive invitations. The Detective administrator account can also invite other accounts to the organization behavior graph.
Every behavior graph is specific to a Region. You can only use the API to manage behavior graphs that belong to the Region that is associated with the currently selected endpoint.
The administrator account for a behavior graph can use the Detective API to do the following:
-
Enable and disable Detective. Enabling Detective creates a new behavior graph.
-
View the list of member accounts in a behavior graph.
-
Add member accounts to a behavior graph.
-
Remove member accounts from a behavior graph.
-
Apply tags to a behavior graph.
The organization management account can use the Detective API to select the delegated administrator for Detective.
The Detective administrator account for an organization can use the Detective API to do the following:
-
Perform all of the functions of an administrator account.
-
Determine whether to automatically enable new organization accounts as member accounts in the organization behavior graph.
An invited member account can use the Detective API to do the following:
-
View the list of behavior graphs that they are invited to.
-
Accept an invitation to contribute to a behavior graph.
-
Decline an invitation to contribute to a behavior graph.
-
Remove their account from a behavior graph.
All API actions are logged as CloudTrail events. See Logging Detective API Calls with CloudTrail.
We replaced the term "master account" with the term "administrator account". An administrator account is used to centrally manage multiple accounts. In the case of Detective, the administrator account manages the accounts in their behavior graph.
-
Field Summary
FieldsModifier and TypeFieldDescriptionstatic final StringValue for looking up the service's metadata from theServiceMetadataProvider.static final String -
Method Summary
Modifier and TypeMethodDescriptiondefault AcceptInvitationResponseacceptInvitation(Consumer<AcceptInvitationRequest.Builder> acceptInvitationRequest) Accepts an invitation for the member account to contribute data to a behavior graph.default AcceptInvitationResponseacceptInvitation(AcceptInvitationRequest acceptInvitationRequest) Accepts an invitation for the member account to contribute data to a behavior graph.batchGetGraphMemberDatasources(Consumer<BatchGetGraphMemberDatasourcesRequest.Builder> batchGetGraphMemberDatasourcesRequest) Gets data source package information for the behavior graph.batchGetGraphMemberDatasources(BatchGetGraphMemberDatasourcesRequest batchGetGraphMemberDatasourcesRequest) Gets data source package information for the behavior graph.batchGetMembershipDatasources(Consumer<BatchGetMembershipDatasourcesRequest.Builder> batchGetMembershipDatasourcesRequest) Gets information on the data source package history for an account.batchGetMembershipDatasources(BatchGetMembershipDatasourcesRequest batchGetMembershipDatasourcesRequest) Gets information on the data source package history for an account.static DetectiveClientBuilderbuilder()Create a builder that can be used to configure and create aDetectiveClient.static DetectiveClientcreate()Create aDetectiveClientwith the region loaded from theDefaultAwsRegionProviderChainand credentials loaded from theDefaultCredentialsProvider.default CreateGraphResponsecreateGraph(Consumer<CreateGraphRequest.Builder> createGraphRequest) Creates a new behavior graph for the calling account, and sets that account as the administrator account.default CreateGraphResponsecreateGraph(CreateGraphRequest createGraphRequest) Creates a new behavior graph for the calling account, and sets that account as the administrator account.default CreateMembersResponsecreateMembers(Consumer<CreateMembersRequest.Builder> createMembersRequest) CreateMembersis used to send invitations to accounts.default CreateMembersResponsecreateMembers(CreateMembersRequest createMembersRequest) CreateMembersis used to send invitations to accounts.default DeleteGraphResponsedeleteGraph(Consumer<DeleteGraphRequest.Builder> deleteGraphRequest) Disables the specified behavior graph and queues it to be deleted.default DeleteGraphResponsedeleteGraph(DeleteGraphRequest deleteGraphRequest) Disables the specified behavior graph and queues it to be deleted.default DeleteMembersResponsedeleteMembers(Consumer<DeleteMembersRequest.Builder> deleteMembersRequest) Removes the specified member accounts from the behavior graph.default DeleteMembersResponsedeleteMembers(DeleteMembersRequest deleteMembersRequest) Removes the specified member accounts from the behavior graph.describeOrganizationConfiguration(Consumer<DescribeOrganizationConfigurationRequest.Builder> describeOrganizationConfigurationRequest) Returns information about the configuration for the organization behavior graph.describeOrganizationConfiguration(DescribeOrganizationConfigurationRequest describeOrganizationConfigurationRequest) Returns information about the configuration for the organization behavior graph.disableOrganizationAdminAccount(Consumer<DisableOrganizationAdminAccountRequest.Builder> disableOrganizationAdminAccountRequest) Removes the Detective administrator account in the current Region.disableOrganizationAdminAccount(DisableOrganizationAdminAccountRequest disableOrganizationAdminAccountRequest) Removes the Detective administrator account in the current Region.default DisassociateMembershipResponsedisassociateMembership(Consumer<DisassociateMembershipRequest.Builder> disassociateMembershipRequest) Removes the member account from the specified behavior graph.default DisassociateMembershipResponsedisassociateMembership(DisassociateMembershipRequest disassociateMembershipRequest) Removes the member account from the specified behavior graph.enableOrganizationAdminAccount(Consumer<EnableOrganizationAdminAccountRequest.Builder> enableOrganizationAdminAccountRequest) Designates the Detective administrator account for the organization in the current Region.enableOrganizationAdminAccount(EnableOrganizationAdminAccountRequest enableOrganizationAdminAccountRequest) Designates the Detective administrator account for the organization in the current Region.default GetInvestigationResponsegetInvestigation(Consumer<GetInvestigationRequest.Builder> getInvestigationRequest) Detective investigations lets you investigate IAM users and IAM roles using indicators of compromise.default GetInvestigationResponsegetInvestigation(GetInvestigationRequest getInvestigationRequest) Detective investigations lets you investigate IAM users and IAM roles using indicators of compromise.default GetMembersResponsegetMembers(Consumer<GetMembersRequest.Builder> getMembersRequest) Returns the membership details for specified member accounts for a behavior graph.default GetMembersResponsegetMembers(GetMembersRequest getMembersRequest) Returns the membership details for specified member accounts for a behavior graph.default ListDatasourcePackagesResponselistDatasourcePackages(Consumer<ListDatasourcePackagesRequest.Builder> listDatasourcePackagesRequest) Lists data source packages in the behavior graph.default ListDatasourcePackagesResponselistDatasourcePackages(ListDatasourcePackagesRequest listDatasourcePackagesRequest) Lists data source packages in the behavior graph.default ListDatasourcePackagesIterablelistDatasourcePackagesPaginator(Consumer<ListDatasourcePackagesRequest.Builder> listDatasourcePackagesRequest) This is a variant oflistDatasourcePackages(software.amazon.awssdk.services.detective.model.ListDatasourcePackagesRequest)operation.default ListDatasourcePackagesIterablelistDatasourcePackagesPaginator(ListDatasourcePackagesRequest listDatasourcePackagesRequest) This is a variant oflistDatasourcePackages(software.amazon.awssdk.services.detective.model.ListDatasourcePackagesRequest)operation.default ListGraphsResponselistGraphs(Consumer<ListGraphsRequest.Builder> listGraphsRequest) Returns the list of behavior graphs that the calling account is an administrator account of.default ListGraphsResponselistGraphs(ListGraphsRequest listGraphsRequest) Returns the list of behavior graphs that the calling account is an administrator account of.default ListGraphsIterablelistGraphsPaginator(Consumer<ListGraphsRequest.Builder> listGraphsRequest) This is a variant oflistGraphs(software.amazon.awssdk.services.detective.model.ListGraphsRequest)operation.default ListGraphsIterablelistGraphsPaginator(ListGraphsRequest listGraphsRequest) This is a variant oflistGraphs(software.amazon.awssdk.services.detective.model.ListGraphsRequest)operation.default ListIndicatorsResponselistIndicators(Consumer<ListIndicatorsRequest.Builder> listIndicatorsRequest) Gets the indicators from an investigation.default ListIndicatorsResponselistIndicators(ListIndicatorsRequest listIndicatorsRequest) Gets the indicators from an investigation.default ListInvestigationsResponselistInvestigations(Consumer<ListInvestigationsRequest.Builder> listInvestigationsRequest) Detective investigations lets you investigate IAM users and IAM roles using indicators of compromise.default ListInvestigationsResponselistInvestigations(ListInvestigationsRequest listInvestigationsRequest) Detective investigations lets you investigate IAM users and IAM roles using indicators of compromise.default ListInvitationsResponselistInvitations(Consumer<ListInvitationsRequest.Builder> listInvitationsRequest) Retrieves the list of open and accepted behavior graph invitations for the member account.default ListInvitationsResponselistInvitations(ListInvitationsRequest listInvitationsRequest) Retrieves the list of open and accepted behavior graph invitations for the member account.default ListInvitationsIterablelistInvitationsPaginator(Consumer<ListInvitationsRequest.Builder> listInvitationsRequest) This is a variant oflistInvitations(software.amazon.awssdk.services.detective.model.ListInvitationsRequest)operation.default ListInvitationsIterablelistInvitationsPaginator(ListInvitationsRequest listInvitationsRequest) This is a variant oflistInvitations(software.amazon.awssdk.services.detective.model.ListInvitationsRequest)operation.default ListMembersResponselistMembers(Consumer<ListMembersRequest.Builder> listMembersRequest) Retrieves the list of member accounts for a behavior graph.default ListMembersResponselistMembers(ListMembersRequest listMembersRequest) Retrieves the list of member accounts for a behavior graph.default ListMembersIterablelistMembersPaginator(Consumer<ListMembersRequest.Builder> listMembersRequest) This is a variant oflistMembers(software.amazon.awssdk.services.detective.model.ListMembersRequest)operation.default ListMembersIterablelistMembersPaginator(ListMembersRequest listMembersRequest) This is a variant oflistMembers(software.amazon.awssdk.services.detective.model.ListMembersRequest)operation.listOrganizationAdminAccounts(Consumer<ListOrganizationAdminAccountsRequest.Builder> listOrganizationAdminAccountsRequest) Returns information about the Detective administrator account for an organization.listOrganizationAdminAccounts(ListOrganizationAdminAccountsRequest listOrganizationAdminAccountsRequest) Returns information about the Detective administrator account for an organization.listOrganizationAdminAccountsPaginator(Consumer<ListOrganizationAdminAccountsRequest.Builder> listOrganizationAdminAccountsRequest) This is a variant oflistOrganizationAdminAccounts(software.amazon.awssdk.services.detective.model.ListOrganizationAdminAccountsRequest)operation.listOrganizationAdminAccountsPaginator(ListOrganizationAdminAccountsRequest listOrganizationAdminAccountsRequest) This is a variant oflistOrganizationAdminAccounts(software.amazon.awssdk.services.detective.model.ListOrganizationAdminAccountsRequest)operation.default ListTagsForResourceResponselistTagsForResource(Consumer<ListTagsForResourceRequest.Builder> listTagsForResourceRequest) Returns the tag values that are assigned to a behavior graph.default ListTagsForResourceResponselistTagsForResource(ListTagsForResourceRequest listTagsForResourceRequest) Returns the tag values that are assigned to a behavior graph.default RejectInvitationResponserejectInvitation(Consumer<RejectInvitationRequest.Builder> rejectInvitationRequest) Rejects an invitation to contribute the account data to a behavior graph.default RejectInvitationResponserejectInvitation(RejectInvitationRequest rejectInvitationRequest) Rejects an invitation to contribute the account data to a behavior graph.The SDK service client configuration exposes client settings to the user, e.g., ClientOverrideConfigurationstatic ServiceMetadatadefault StartInvestigationResponsestartInvestigation(Consumer<StartInvestigationRequest.Builder> startInvestigationRequest) Detective investigations lets you investigate IAM users and IAM roles using indicators of compromise.default StartInvestigationResponsestartInvestigation(StartInvestigationRequest startInvestigationRequest) Detective investigations lets you investigate IAM users and IAM roles using indicators of compromise.default StartMonitoringMemberResponsestartMonitoringMember(Consumer<StartMonitoringMemberRequest.Builder> startMonitoringMemberRequest) Sends a request to enable data ingest for a member account that has a status ofACCEPTED_BUT_DISABLED.default StartMonitoringMemberResponsestartMonitoringMember(StartMonitoringMemberRequest startMonitoringMemberRequest) Sends a request to enable data ingest for a member account that has a status ofACCEPTED_BUT_DISABLED.default TagResourceResponsetagResource(Consumer<TagResourceRequest.Builder> tagResourceRequest) Applies tag values to a behavior graph.default TagResourceResponsetagResource(TagResourceRequest tagResourceRequest) Applies tag values to a behavior graph.default UntagResourceResponseuntagResource(Consumer<UntagResourceRequest.Builder> untagResourceRequest) Removes tags from a behavior graph.default UntagResourceResponseuntagResource(UntagResourceRequest untagResourceRequest) Removes tags from a behavior graph.default UpdateDatasourcePackagesResponseupdateDatasourcePackages(Consumer<UpdateDatasourcePackagesRequest.Builder> updateDatasourcePackagesRequest) Starts a data source packages for the behavior graph.default UpdateDatasourcePackagesResponseupdateDatasourcePackages(UpdateDatasourcePackagesRequest updateDatasourcePackagesRequest) Starts a data source packages for the behavior graph.default UpdateInvestigationStateResponseupdateInvestigationState(Consumer<UpdateInvestigationStateRequest.Builder> updateInvestigationStateRequest) Updates the state of an investigation.default UpdateInvestigationStateResponseupdateInvestigationState(UpdateInvestigationStateRequest updateInvestigationStateRequest) Updates the state of an investigation.updateOrganizationConfiguration(Consumer<UpdateOrganizationConfigurationRequest.Builder> updateOrganizationConfigurationRequest) Updates the configuration for the Organizations integration in the current Region.updateOrganizationConfiguration(UpdateOrganizationConfigurationRequest updateOrganizationConfigurationRequest) Updates the configuration for the Organizations integration in the current Region.Methods inherited from interface software.amazon.awssdk.utils.SdkAutoCloseable
closeMethods inherited from interface software.amazon.awssdk.core.SdkClient
serviceName
-
Field Details
-
SERVICE_NAME
- See Also:
-
SERVICE_METADATA_ID
Value for looking up the service's metadata from theServiceMetadataProvider.- See Also:
-
-
Method Details
-
acceptInvitation
default AcceptInvitationResponse acceptInvitation(AcceptInvitationRequest acceptInvitationRequest) throws AccessDeniedException, ConflictException, InternalServerException, ResourceNotFoundException, ValidationException, AwsServiceException, SdkClientException, DetectiveException Accepts an invitation for the member account to contribute data to a behavior graph. This operation can only be called by an invited member account.
The request provides the ARN of behavior graph.
The member account status in the graph must be
INVITED.- Parameters:
acceptInvitationRequest-- Returns:
- Result of the AcceptInvitation operation returned by the service.
- See Also:
-
acceptInvitation
default AcceptInvitationResponse acceptInvitation(Consumer<AcceptInvitationRequest.Builder> acceptInvitationRequest) throws AccessDeniedException, ConflictException, InternalServerException, ResourceNotFoundException, ValidationException, AwsServiceException, SdkClientException, DetectiveException Accepts an invitation for the member account to contribute data to a behavior graph. This operation can only be called by an invited member account.
The request provides the ARN of behavior graph.
The member account status in the graph must be
INVITED.
This is a convenience which creates an instance of the
AcceptInvitationRequest.Builderavoiding the need to create one manually viaAcceptInvitationRequest.builder()- Parameters:
acceptInvitationRequest- AConsumerthat will call methods onAcceptInvitationRequest.Builderto create a request.- Returns:
- Result of the AcceptInvitation operation returned by the service.
- See Also:
-
batchGetGraphMemberDatasources
default BatchGetGraphMemberDatasourcesResponse batchGetGraphMemberDatasources(BatchGetGraphMemberDatasourcesRequest batchGetGraphMemberDatasourcesRequest) throws AccessDeniedException, InternalServerException, ResourceNotFoundException, ValidationException, AwsServiceException, SdkClientException, DetectiveException Gets data source package information for the behavior graph.
- Parameters:
batchGetGraphMemberDatasourcesRequest-- Returns:
- Result of the BatchGetGraphMemberDatasources operation returned by the service.
- See Also:
-
batchGetGraphMemberDatasources
default BatchGetGraphMemberDatasourcesResponse batchGetGraphMemberDatasources(Consumer<BatchGetGraphMemberDatasourcesRequest.Builder> batchGetGraphMemberDatasourcesRequest) throws AccessDeniedException, InternalServerException, ResourceNotFoundException, ValidationException, AwsServiceException, SdkClientException, DetectiveException Gets data source package information for the behavior graph.
This is a convenience which creates an instance of the
BatchGetGraphMemberDatasourcesRequest.Builderavoiding the need to create one manually viaBatchGetGraphMemberDatasourcesRequest.builder()- Parameters:
batchGetGraphMemberDatasourcesRequest- AConsumerthat will call methods onBatchGetGraphMemberDatasourcesRequest.Builderto create a request.- Returns:
- Result of the BatchGetGraphMemberDatasources operation returned by the service.
- See Also:
-
batchGetMembershipDatasources
default BatchGetMembershipDatasourcesResponse batchGetMembershipDatasources(BatchGetMembershipDatasourcesRequest batchGetMembershipDatasourcesRequest) throws AccessDeniedException, InternalServerException, ResourceNotFoundException, ValidationException, AwsServiceException, SdkClientException, DetectiveException Gets information on the data source package history for an account.
- Parameters:
batchGetMembershipDatasourcesRequest-- Returns:
- Result of the BatchGetMembershipDatasources operation returned by the service.
- See Also:
-
batchGetMembershipDatasources
default BatchGetMembershipDatasourcesResponse batchGetMembershipDatasources(Consumer<BatchGetMembershipDatasourcesRequest.Builder> batchGetMembershipDatasourcesRequest) throws AccessDeniedException, InternalServerException, ResourceNotFoundException, ValidationException, AwsServiceException, SdkClientException, DetectiveException Gets information on the data source package history for an account.
This is a convenience which creates an instance of the
BatchGetMembershipDatasourcesRequest.Builderavoiding the need to create one manually viaBatchGetMembershipDatasourcesRequest.builder()- Parameters:
batchGetMembershipDatasourcesRequest- AConsumerthat will call methods onBatchGetMembershipDatasourcesRequest.Builderto create a request.- Returns:
- Result of the BatchGetMembershipDatasources operation returned by the service.
- See Also:
-
createGraph
default CreateGraphResponse createGraph(CreateGraphRequest createGraphRequest) throws AccessDeniedException, ConflictException, InternalServerException, ServiceQuotaExceededException, AwsServiceException, SdkClientException, DetectiveException Creates a new behavior graph for the calling account, and sets that account as the administrator account. This operation is called by the account that is enabling Detective.
The operation also enables Detective for the calling account in the currently selected Region. It returns the ARN of the new behavior graph.
CreateGraphtriggers a process to create the corresponding data tables for the new behavior graph.An account can only be the administrator account for one behavior graph within a Region. If the same account calls
CreateGraphwith the same administrator account, it always returns the same behavior graph ARN. It does not create a new behavior graph.- Parameters:
createGraphRequest-- Returns:
- Result of the CreateGraph operation returned by the service.
- See Also:
-
createGraph
default CreateGraphResponse createGraph(Consumer<CreateGraphRequest.Builder> createGraphRequest) throws AccessDeniedException, ConflictException, InternalServerException, ServiceQuotaExceededException, AwsServiceException, SdkClientException, DetectiveException Creates a new behavior graph for the calling account, and sets that account as the administrator account. This operation is called by the account that is enabling Detective.
The operation also enables Detective for the calling account in the currently selected Region. It returns the ARN of the new behavior graph.
CreateGraphtriggers a process to create the corresponding data tables for the new behavior graph.An account can only be the administrator account for one behavior graph within a Region. If the same account calls
CreateGraphwith the same administrator account, it always returns the same behavior graph ARN. It does not create a new behavior graph.
This is a convenience which creates an instance of the
CreateGraphRequest.Builderavoiding the need to create one manually viaCreateGraphRequest.builder()- Parameters:
createGraphRequest- AConsumerthat will call methods onCreateGraphRequest.Builderto create a request.- Returns:
- Result of the CreateGraph operation returned by the service.
- See Also:
-
createMembers
default CreateMembersResponse createMembers(CreateMembersRequest createMembersRequest) throws AccessDeniedException, InternalServerException, ResourceNotFoundException, ValidationException, ServiceQuotaExceededException, AwsServiceException, SdkClientException, DetectiveException CreateMembersis used to send invitations to accounts. For the organization behavior graph, the Detective administrator account usesCreateMembersto enable organization accounts as member accounts.For invited accounts,
CreateMemberssends a request to invite the specified Amazon Web Services accounts to be member accounts in the behavior graph. This operation can only be called by the administrator account for a behavior graph.CreateMembersverifies the accounts and then invites the verified accounts. The administrator can optionally specify to not send invitation emails to the member accounts. This would be used when the administrator manages their member accounts centrally.For organization accounts in the organization behavior graph,
CreateMembersattempts to enable the accounts. The organization accounts do not receive invitations.The request provides the behavior graph ARN and the list of accounts to invite or to enable.
The response separates the requested accounts into two lists:
-
The accounts that
CreateMemberswas able to process. For invited accounts, includes member accounts that are being verified, that have passed verification and are to be invited, and that have failed verification. For organization accounts in the organization behavior graph, includes accounts that can be enabled and that cannot be enabled. -
The accounts that
CreateMemberswas unable to process. This list includes accounts that were already invited to be member accounts in the behavior graph.
- Parameters:
createMembersRequest-- Returns:
- Result of the CreateMembers operation returned by the service.
- See Also:
-
-
createMembers
default CreateMembersResponse createMembers(Consumer<CreateMembersRequest.Builder> createMembersRequest) throws AccessDeniedException, InternalServerException, ResourceNotFoundException, ValidationException, ServiceQuotaExceededException, AwsServiceException, SdkClientException, DetectiveException CreateMembersis used to send invitations to accounts. For the organization behavior graph, the Detective administrator account usesCreateMembersto enable organization accounts as member accounts.For invited accounts,
CreateMemberssends a request to invite the specified Amazon Web Services accounts to be member accounts in the behavior graph. This operation can only be called by the administrator account for a behavior graph.CreateMembersverifies the accounts and then invites the verified accounts. The administrator can optionally specify to not send invitation emails to the member accounts. This would be used when the administrator manages their member accounts centrally.For organization accounts in the organization behavior graph,
CreateMembersattempts to enable the accounts. The organization accounts do not receive invitations.The request provides the behavior graph ARN and the list of accounts to invite or to enable.
The response separates the requested accounts into two lists:
-
The accounts that
CreateMemberswas able to process. For invited accounts, includes member accounts that are being verified, that have passed verification and are to be invited, and that have failed verification. For organization accounts in the organization behavior graph, includes accounts that can be enabled and that cannot be enabled. -
The accounts that
CreateMemberswas unable to process. This list includes accounts that were already invited to be member accounts in the behavior graph.
This is a convenience which creates an instance of the
CreateMembersRequest.Builderavoiding the need to create one manually viaCreateMembersRequest.builder()- Parameters:
createMembersRequest- AConsumerthat will call methods onCreateMembersRequest.Builderto create a request.- Returns:
- Result of the CreateMembers operation returned by the service.
- See Also:
-
-
deleteGraph
default DeleteGraphResponse deleteGraph(DeleteGraphRequest deleteGraphRequest) throws AccessDeniedException, InternalServerException, ResourceNotFoundException, ValidationException, AwsServiceException, SdkClientException, DetectiveException Disables the specified behavior graph and queues it to be deleted. This operation removes the behavior graph from each member account's list of behavior graphs.
DeleteGraphcan only be called by the administrator account for a behavior graph.- Parameters:
deleteGraphRequest-- Returns:
- Result of the DeleteGraph operation returned by the service.
- See Also:
-
deleteGraph
default DeleteGraphResponse deleteGraph(Consumer<DeleteGraphRequest.Builder> deleteGraphRequest) throws AccessDeniedException, InternalServerException, ResourceNotFoundException, ValidationException, AwsServiceException, SdkClientException, DetectiveException Disables the specified behavior graph and queues it to be deleted. This operation removes the behavior graph from each member account's list of behavior graphs.
DeleteGraphcan only be called by the administrator account for a behavior graph.
This is a convenience which creates an instance of the
DeleteGraphRequest.Builderavoiding the need to create one manually viaDeleteGraphRequest.builder()- Parameters:
deleteGraphRequest- AConsumerthat will call methods onDeleteGraphRequest.Builderto create a request.- Returns:
- Result of the DeleteGraph operation returned by the service.
- See Also:
-
deleteMembers
default DeleteMembersResponse deleteMembers(DeleteMembersRequest deleteMembersRequest) throws AccessDeniedException, ConflictException, InternalServerException, ResourceNotFoundException, ValidationException, AwsServiceException, SdkClientException, DetectiveException Removes the specified member accounts from the behavior graph. The removed accounts no longer contribute data to the behavior graph. This operation can only be called by the administrator account for the behavior graph.
For invited accounts, the removed accounts are deleted from the list of accounts in the behavior graph. To restore the account, the administrator account must send another invitation.
For organization accounts in the organization behavior graph, the Detective administrator account can always enable the organization account again. Organization accounts that are not enabled as member accounts are not included in the
ListMembersresults for the organization behavior graph.An administrator account cannot use
DeleteMembersto remove their own account from the behavior graph. To disable a behavior graph, the administrator account uses theDeleteGraphAPI method.- Parameters:
deleteMembersRequest-- Returns:
- Result of the DeleteMembers operation returned by the service.
- See Also:
-
deleteMembers
default DeleteMembersResponse deleteMembers(Consumer<DeleteMembersRequest.Builder> deleteMembersRequest) throws AccessDeniedException, ConflictException, InternalServerException, ResourceNotFoundException, ValidationException, AwsServiceException, SdkClientException, DetectiveException Removes the specified member accounts from the behavior graph. The removed accounts no longer contribute data to the behavior graph. This operation can only be called by the administrator account for the behavior graph.
For invited accounts, the removed accounts are deleted from the list of accounts in the behavior graph. To restore the account, the administrator account must send another invitation.
For organization accounts in the organization behavior graph, the Detective administrator account can always enable the organization account again. Organization accounts that are not enabled as member accounts are not included in the
ListMembersresults for the organization behavior graph.An administrator account cannot use
DeleteMembersto remove their own account from the behavior graph. To disable a behavior graph, the administrator account uses theDeleteGraphAPI method.
This is a convenience which creates an instance of the
DeleteMembersRequest.Builderavoiding the need to create one manually viaDeleteMembersRequest.builder()- Parameters:
deleteMembersRequest- AConsumerthat will call methods onDeleteMembersRequest.Builderto create a request.- Returns:
- Result of the DeleteMembers operation returned by the service.
- See Also:
-
describeOrganizationConfiguration
default DescribeOrganizationConfigurationResponse describeOrganizationConfiguration(DescribeOrganizationConfigurationRequest describeOrganizationConfigurationRequest) throws AccessDeniedException, InternalServerException, ValidationException, TooManyRequestsException, AwsServiceException, SdkClientException, DetectiveException Returns information about the configuration for the organization behavior graph. Currently indicates whether to automatically enable new organization accounts as member accounts.
Can only be called by the Detective administrator account for the organization.
- Parameters:
describeOrganizationConfigurationRequest-- Returns:
- Result of the DescribeOrganizationConfiguration operation returned by the service.
- See Also:
-
describeOrganizationConfiguration
default DescribeOrganizationConfigurationResponse describeOrganizationConfiguration(Consumer<DescribeOrganizationConfigurationRequest.Builder> describeOrganizationConfigurationRequest) throws AccessDeniedException, InternalServerException, ValidationException, TooManyRequestsException, AwsServiceException, SdkClientException, DetectiveException Returns information about the configuration for the organization behavior graph. Currently indicates whether to automatically enable new organization accounts as member accounts.
Can only be called by the Detective administrator account for the organization.
This is a convenience which creates an instance of the
DescribeOrganizationConfigurationRequest.Builderavoiding the need to create one manually viaDescribeOrganizationConfigurationRequest.builder()- Parameters:
describeOrganizationConfigurationRequest- AConsumerthat will call methods onDescribeOrganizationConfigurationRequest.Builderto create a request.- Returns:
- Result of the DescribeOrganizationConfiguration operation returned by the service.
- See Also:
-
disableOrganizationAdminAccount
default DisableOrganizationAdminAccountResponse disableOrganizationAdminAccount(DisableOrganizationAdminAccountRequest disableOrganizationAdminAccountRequest) throws AccessDeniedException, InternalServerException, ValidationException, TooManyRequestsException, AwsServiceException, SdkClientException, DetectiveException Removes the Detective administrator account in the current Region. Deletes the organization behavior graph.
Can only be called by the organization management account.
Removing the Detective administrator account does not affect the delegated administrator account for Detective in Organizations.
To remove the delegated administrator account in Organizations, use the Organizations API. Removing the delegated administrator account also removes the Detective administrator account in all Regions, except for Regions where the Detective administrator account is the organization management account.
- Parameters:
disableOrganizationAdminAccountRequest-- Returns:
- Result of the DisableOrganizationAdminAccount operation returned by the service.
- See Also:
-
disableOrganizationAdminAccount
default DisableOrganizationAdminAccountResponse disableOrganizationAdminAccount(Consumer<DisableOrganizationAdminAccountRequest.Builder> disableOrganizationAdminAccountRequest) throws AccessDeniedException, InternalServerException, ValidationException, TooManyRequestsException, AwsServiceException, SdkClientException, DetectiveException Removes the Detective administrator account in the current Region. Deletes the organization behavior graph.
Can only be called by the organization management account.
Removing the Detective administrator account does not affect the delegated administrator account for Detective in Organizations.
To remove the delegated administrator account in Organizations, use the Organizations API. Removing the delegated administrator account also removes the Detective administrator account in all Regions, except for Regions where the Detective administrator account is the organization management account.
This is a convenience which creates an instance of the
DisableOrganizationAdminAccountRequest.Builderavoiding the need to create one manually viaDisableOrganizationAdminAccountRequest.builder()- Parameters:
disableOrganizationAdminAccountRequest- AConsumerthat will call methods onDisableOrganizationAdminAccountRequest.Builderto create a request.- Returns:
- Result of the DisableOrganizationAdminAccount operation returned by the service.
- See Also:
-
disassociateMembership
default DisassociateMembershipResponse disassociateMembership(DisassociateMembershipRequest disassociateMembershipRequest) throws AccessDeniedException, ConflictException, InternalServerException, ResourceNotFoundException, ValidationException, AwsServiceException, SdkClientException, DetectiveException Removes the member account from the specified behavior graph. This operation can only be called by an invited member account that has the
ENABLEDstatus.DisassociateMembershipcannot be called by an organization account in the organization behavior graph. For the organization behavior graph, the Detective administrator account determines which organization accounts to enable or disable as member accounts.- Parameters:
disassociateMembershipRequest-- Returns:
- Result of the DisassociateMembership operation returned by the service.
- See Also:
-
disassociateMembership
default DisassociateMembershipResponse disassociateMembership(Consumer<DisassociateMembershipRequest.Builder> disassociateMembershipRequest) throws AccessDeniedException, ConflictException, InternalServerException, ResourceNotFoundException, ValidationException, AwsServiceException, SdkClientException, DetectiveException Removes the member account from the specified behavior graph. This operation can only be called by an invited member account that has the
ENABLEDstatus.DisassociateMembershipcannot be called by an organization account in the organization behavior graph. For the organization behavior graph, the Detective administrator account determines which organization accounts to enable or disable as member accounts.
This is a convenience which creates an instance of the
DisassociateMembershipRequest.Builderavoiding the need to create one manually viaDisassociateMembershipRequest.builder()- Parameters:
disassociateMembershipRequest- AConsumerthat will call methods onDisassociateMembershipRequest.Builderto create a request.- Returns:
- Result of the DisassociateMembership operation returned by the service.
- See Also:
-
enableOrganizationAdminAccount
default EnableOrganizationAdminAccountResponse enableOrganizationAdminAccount(EnableOrganizationAdminAccountRequest enableOrganizationAdminAccountRequest) throws AccessDeniedException, InternalServerException, ValidationException, TooManyRequestsException, AwsServiceException, SdkClientException, DetectiveException Designates the Detective administrator account for the organization in the current Region.
If the account does not have Detective enabled, then enables Detective for that account and creates a new behavior graph.
Can only be called by the organization management account.
If the organization has a delegated administrator account in Organizations, then the Detective administrator account must be either the delegated administrator account or the organization management account.
If the organization does not have a delegated administrator account in Organizations, then you can choose any account in the organization. If you choose an account other than the organization management account, Detective calls Organizations to make that account the delegated administrator account for Detective. The organization management account cannot be the delegated administrator account.
- Parameters:
enableOrganizationAdminAccountRequest-- Returns:
- Result of the EnableOrganizationAdminAccount operation returned by the service.
- See Also:
-
enableOrganizationAdminAccount
default EnableOrganizationAdminAccountResponse enableOrganizationAdminAccount(Consumer<EnableOrganizationAdminAccountRequest.Builder> enableOrganizationAdminAccountRequest) throws AccessDeniedException, InternalServerException, ValidationException, TooManyRequestsException, AwsServiceException, SdkClientException, DetectiveException Designates the Detective administrator account for the organization in the current Region.
If the account does not have Detective enabled, then enables Detective for that account and creates a new behavior graph.
Can only be called by the organization management account.
If the organization has a delegated administrator account in Organizations, then the Detective administrator account must be either the delegated administrator account or the organization management account.
If the organization does not have a delegated administrator account in Organizations, then you can choose any account in the organization. If you choose an account other than the organization management account, Detective calls Organizations to make that account the delegated administrator account for Detective. The organization management account cannot be the delegated administrator account.
This is a convenience which creates an instance of the
EnableOrganizationAdminAccountRequest.Builderavoiding the need to create one manually viaEnableOrganizationAdminAccountRequest.builder()- Parameters:
enableOrganizationAdminAccountRequest- AConsumerthat will call methods onEnableOrganizationAdminAccountRequest.Builderto create a request.- Returns:
- Result of the EnableOrganizationAdminAccount operation returned by the service.
- See Also:
-
getInvestigation
default GetInvestigationResponse getInvestigation(GetInvestigationRequest getInvestigationRequest) throws AccessDeniedException, InternalServerException, ValidationException, ResourceNotFoundException, TooManyRequestsException, AwsServiceException, SdkClientException, DetectiveException Detective investigations lets you investigate IAM users and IAM roles using indicators of compromise. An indicator of compromise (IOC) is an artifact observed in or on a network, system, or environment that can (with a high level of confidence) identify malicious activity or a security incident.
GetInvestigationreturns the investigation results of an investigation for a behavior graph.- Parameters:
getInvestigationRequest-- Returns:
- Result of the GetInvestigation operation returned by the service.
- See Also:
-
getInvestigation
default GetInvestigationResponse getInvestigation(Consumer<GetInvestigationRequest.Builder> getInvestigationRequest) throws AccessDeniedException, InternalServerException, ValidationException, ResourceNotFoundException, TooManyRequestsException, AwsServiceException, SdkClientException, DetectiveException Detective investigations lets you investigate IAM users and IAM roles using indicators of compromise. An indicator of compromise (IOC) is an artifact observed in or on a network, system, or environment that can (with a high level of confidence) identify malicious activity or a security incident.
GetInvestigationreturns the investigation results of an investigation for a behavior graph.
This is a convenience which creates an instance of the
GetInvestigationRequest.Builderavoiding the need to create one manually viaGetInvestigationRequest.builder()- Parameters:
getInvestigationRequest- AConsumerthat will call methods onGetInvestigationRequest.Builderto create a request.- Returns:
- Result of the GetInvestigation operation returned by the service.
- See Also:
-
getMembers
default GetMembersResponse getMembers(GetMembersRequest getMembersRequest) throws AccessDeniedException, InternalServerException, ResourceNotFoundException, ValidationException, AwsServiceException, SdkClientException, DetectiveException Returns the membership details for specified member accounts for a behavior graph.
- Parameters:
getMembersRequest-- Returns:
- Result of the GetMembers operation returned by the service.
- See Also:
-
getMembers
default GetMembersResponse getMembers(Consumer<GetMembersRequest.Builder> getMembersRequest) throws AccessDeniedException, InternalServerException, ResourceNotFoundException, ValidationException, AwsServiceException, SdkClientException, DetectiveException Returns the membership details for specified member accounts for a behavior graph.
This is a convenience which creates an instance of the
GetMembersRequest.Builderavoiding the need to create one manually viaGetMembersRequest.builder()- Parameters:
getMembersRequest- AConsumerthat will call methods onGetMembersRequest.Builderto create a request.- Returns:
- Result of the GetMembers operation returned by the service.
- See Also:
-
listDatasourcePackages
default ListDatasourcePackagesResponse listDatasourcePackages(ListDatasourcePackagesRequest listDatasourcePackagesRequest) throws AccessDeniedException, InternalServerException, ResourceNotFoundException, ValidationException, AwsServiceException, SdkClientException, DetectiveException Lists data source packages in the behavior graph.
- Parameters:
listDatasourcePackagesRequest-- Returns:
- Result of the ListDatasourcePackages operation returned by the service.
- See Also:
-
listDatasourcePackages
default ListDatasourcePackagesResponse listDatasourcePackages(Consumer<ListDatasourcePackagesRequest.Builder> listDatasourcePackagesRequest) throws AccessDeniedException, InternalServerException, ResourceNotFoundException, ValidationException, AwsServiceException, SdkClientException, DetectiveException Lists data source packages in the behavior graph.
This is a convenience which creates an instance of the
ListDatasourcePackagesRequest.Builderavoiding the need to create one manually viaListDatasourcePackagesRequest.builder()- Parameters:
listDatasourcePackagesRequest- AConsumerthat will call methods onListDatasourcePackagesRequest.Builderto create a request.- Returns:
- Result of the ListDatasourcePackages operation returned by the service.
- See Also:
-
listDatasourcePackagesPaginator
default ListDatasourcePackagesIterable listDatasourcePackagesPaginator(ListDatasourcePackagesRequest listDatasourcePackagesRequest) throws AccessDeniedException, InternalServerException, ResourceNotFoundException, ValidationException, AwsServiceException, SdkClientException, DetectiveException This is a variant of
listDatasourcePackages(software.amazon.awssdk.services.detective.model.ListDatasourcePackagesRequest)operation. The return type is a custom iterable that can be used to iterate through all the pages. SDK will internally handle making service calls for you.When this operation is called, a custom iterable is returned but no service calls are made yet. So there is no guarantee that the request is valid. As you iterate through the iterable, SDK will start lazily loading response pages by making service calls until there are no pages left or your iteration stops. If there are errors in your request, you will see the failures only after you start iterating through the iterable.
The following are few ways to iterate through the response pages:
1) Using a Stream
2) Using For loopsoftware.amazon.awssdk.services.detective.paginators.ListDatasourcePackagesIterable responses = client.listDatasourcePackagesPaginator(request); responses.stream().forEach(....);{ @code software.amazon.awssdk.services.detective.paginators.ListDatasourcePackagesIterable responses = client .listDatasourcePackagesPaginator(request); for (software.amazon.awssdk.services.detective.model.ListDatasourcePackagesResponse response : responses) { // do something; } }3) Use iterator directlysoftware.amazon.awssdk.services.detective.paginators.ListDatasourcePackagesIterable responses = client.listDatasourcePackagesPaginator(request); responses.iterator().forEachRemaining(....);Please notice that the configuration of MaxResults won't limit the number of results you get with the paginator. It only limits the number of results in each page.
Note: If you prefer to have control on service calls, use the
listDatasourcePackages(software.amazon.awssdk.services.detective.model.ListDatasourcePackagesRequest)operation.- Parameters:
listDatasourcePackagesRequest-- Returns:
- A custom iterable that can be used to iterate through all the response pages.
- See Also:
-
listDatasourcePackagesPaginator
default ListDatasourcePackagesIterable listDatasourcePackagesPaginator(Consumer<ListDatasourcePackagesRequest.Builder> listDatasourcePackagesRequest) throws AccessDeniedException, InternalServerException, ResourceNotFoundException, ValidationException, AwsServiceException, SdkClientException, DetectiveException This is a variant of
listDatasourcePackages(software.amazon.awssdk.services.detective.model.ListDatasourcePackagesRequest)operation. The return type is a custom iterable that can be used to iterate through all the pages. SDK will internally handle making service calls for you.When this operation is called, a custom iterable is returned but no service calls are made yet. So there is no guarantee that the request is valid. As you iterate through the iterable, SDK will start lazily loading response pages by making service calls until there are no pages left or your iteration stops. If there are errors in your request, you will see the failures only after you start iterating through the iterable.
The following are few ways to iterate through the response pages:
1) Using a Stream
2) Using For loopsoftware.amazon.awssdk.services.detective.paginators.ListDatasourcePackagesIterable responses = client.listDatasourcePackagesPaginator(request); responses.stream().forEach(....);{ @code software.amazon.awssdk.services.detective.paginators.ListDatasourcePackagesIterable responses = client .listDatasourcePackagesPaginator(request); for (software.amazon.awssdk.services.detective.model.ListDatasourcePackagesResponse response : responses) { // do something; } }3) Use iterator directlysoftware.amazon.awssdk.services.detective.paginators.ListDatasourcePackagesIterable responses = client.listDatasourcePackagesPaginator(request); responses.iterator().forEachRemaining(....);Please notice that the configuration of MaxResults won't limit the number of results you get with the paginator. It only limits the number of results in each page.
Note: If you prefer to have control on service calls, use the
listDatasourcePackages(software.amazon.awssdk.services.detective.model.ListDatasourcePackagesRequest)operation.
This is a convenience which creates an instance of the
ListDatasourcePackagesRequest.Builderavoiding the need to create one manually viaListDatasourcePackagesRequest.builder()- Parameters:
listDatasourcePackagesRequest- AConsumerthat will call methods onListDatasourcePackagesRequest.Builderto create a request.- Returns:
- A custom iterable that can be used to iterate through all the response pages.
- See Also:
-
listGraphs
default ListGraphsResponse listGraphs(ListGraphsRequest listGraphsRequest) throws AccessDeniedException, InternalServerException, ValidationException, AwsServiceException, SdkClientException, DetectiveException Returns the list of behavior graphs that the calling account is an administrator account of. This operation can only be called by an administrator account.
Because an account can currently only be the administrator of one behavior graph within a Region, the results always contain a single behavior graph.
- Parameters:
listGraphsRequest-- Returns:
- Result of the ListGraphs operation returned by the service.
- See Also:
-
listGraphs
default ListGraphsResponse listGraphs(Consumer<ListGraphsRequest.Builder> listGraphsRequest) throws AccessDeniedException, InternalServerException, ValidationException, AwsServiceException, SdkClientException, DetectiveException Returns the list of behavior graphs that the calling account is an administrator account of. This operation can only be called by an administrator account.
Because an account can currently only be the administrator of one behavior graph within a Region, the results always contain a single behavior graph.
This is a convenience which creates an instance of the
ListGraphsRequest.Builderavoiding the need to create one manually viaListGraphsRequest.builder()- Parameters:
listGraphsRequest- AConsumerthat will call methods onListGraphsRequest.Builderto create a request.- Returns:
- Result of the ListGraphs operation returned by the service.
- See Also:
-
listGraphsPaginator
default ListGraphsIterable listGraphsPaginator(ListGraphsRequest listGraphsRequest) throws AccessDeniedException, InternalServerException, ValidationException, AwsServiceException, SdkClientException, DetectiveException This is a variant of
listGraphs(software.amazon.awssdk.services.detective.model.ListGraphsRequest)operation. The return type is a custom iterable that can be used to iterate through all the pages. SDK will internally handle making service calls for you.When this operation is called, a custom iterable is returned but no service calls are made yet. So there is no guarantee that the request is valid. As you iterate through the iterable, SDK will start lazily loading response pages by making service calls until there are no pages left or your iteration stops. If there are errors in your request, you will see the failures only after you start iterating through the iterable.
The following are few ways to iterate through the response pages:
1) Using a Stream
2) Using For loopsoftware.amazon.awssdk.services.detective.paginators.ListGraphsIterable responses = client.listGraphsPaginator(request); responses.stream().forEach(....);{ @code software.amazon.awssdk.services.detective.paginators.ListGraphsIterable responses = client.listGraphsPaginator(request); for (software.amazon.awssdk.services.detective.model.ListGraphsResponse response : responses) { // do something; } }3) Use iterator directlysoftware.amazon.awssdk.services.detective.paginators.ListGraphsIterable responses = client.listGraphsPaginator(request); responses.iterator().forEachRemaining(....);Please notice that the configuration of MaxResults won't limit the number of results you get with the paginator. It only limits the number of results in each page.
Note: If you prefer to have control on service calls, use the
listGraphs(software.amazon.awssdk.services.detective.model.ListGraphsRequest)operation.- Parameters:
listGraphsRequest-- Returns:
- A custom iterable that can be used to iterate through all the response pages.
- See Also:
-
listGraphsPaginator
default ListGraphsIterable listGraphsPaginator(Consumer<ListGraphsRequest.Builder> listGraphsRequest) throws AccessDeniedException, InternalServerException, ValidationException, AwsServiceException, SdkClientException, DetectiveException This is a variant of
listGraphs(software.amazon.awssdk.services.detective.model.ListGraphsRequest)operation. The return type is a custom iterable that can be used to iterate through all the pages. SDK will internally handle making service calls for you.When this operation is called, a custom iterable is returned but no service calls are made yet. So there is no guarantee that the request is valid. As you iterate through the iterable, SDK will start lazily loading response pages by making service calls until there are no pages left or your iteration stops. If there are errors in your request, you will see the failures only after you start iterating through the iterable.
The following are few ways to iterate through the response pages:
1) Using a Stream
2) Using For loopsoftware.amazon.awssdk.services.detective.paginators.ListGraphsIterable responses = client.listGraphsPaginator(request); responses.stream().forEach(....);{ @code software.amazon.awssdk.services.detective.paginators.ListGraphsIterable responses = client.listGraphsPaginator(request); for (software.amazon.awssdk.services.detective.model.ListGraphsResponse response : responses) { // do something; } }3) Use iterator directlysoftware.amazon.awssdk.services.detective.paginators.ListGraphsIterable responses = client.listGraphsPaginator(request); responses.iterator().forEachRemaining(....);Please notice that the configuration of MaxResults won't limit the number of results you get with the paginator. It only limits the number of results in each page.
Note: If you prefer to have control on service calls, use the
listGraphs(software.amazon.awssdk.services.detective.model.ListGraphsRequest)operation.
This is a convenience which creates an instance of the
ListGraphsRequest.Builderavoiding the need to create one manually viaListGraphsRequest.builder()- Parameters:
listGraphsRequest- AConsumerthat will call methods onListGraphsRequest.Builderto create a request.- Returns:
- A custom iterable that can be used to iterate through all the response pages.
- See Also:
-
listIndicators
default ListIndicatorsResponse listIndicators(ListIndicatorsRequest listIndicatorsRequest) throws AccessDeniedException, InternalServerException, ValidationException, ResourceNotFoundException, TooManyRequestsException, AwsServiceException, SdkClientException, DetectiveException Gets the indicators from an investigation. You can use the information from the indicators to determine if an IAM user and/or IAM role is involved in an unusual activity that could indicate malicious behavior and its impact.
- Parameters:
listIndicatorsRequest-- Returns:
- Result of the ListIndicators operation returned by the service.
- See Also:
-
listIndicators
default ListIndicatorsResponse listIndicators(Consumer<ListIndicatorsRequest.Builder> listIndicatorsRequest) throws AccessDeniedException, InternalServerException, ValidationException, ResourceNotFoundException, TooManyRequestsException, AwsServiceException, SdkClientException, DetectiveException Gets the indicators from an investigation. You can use the information from the indicators to determine if an IAM user and/or IAM role is involved in an unusual activity that could indicate malicious behavior and its impact.
This is a convenience which creates an instance of the
ListIndicatorsRequest.Builderavoiding the need to create one manually viaListIndicatorsRequest.builder()- Parameters:
listIndicatorsRequest- AConsumerthat will call methods onListIndicatorsRequest.Builderto create a request.- Returns:
- Result of the ListIndicators operation returned by the service.
- See Also:
-
listInvestigations
default ListInvestigationsResponse listInvestigations(ListInvestigationsRequest listInvestigationsRequest) throws AccessDeniedException, InternalServerException, ValidationException, ResourceNotFoundException, TooManyRequestsException, AwsServiceException, SdkClientException, DetectiveException Detective investigations lets you investigate IAM users and IAM roles using indicators of compromise. An indicator of compromise (IOC) is an artifact observed in or on a network, system, or environment that can (with a high level of confidence) identify malicious activity or a security incident.
ListInvestigationslists all active Detective investigations.- Parameters:
listInvestigationsRequest-- Returns:
- Result of the ListInvestigations operation returned by the service.
- See Also:
-
listInvestigations
default ListInvestigationsResponse listInvestigations(Consumer<ListInvestigationsRequest.Builder> listInvestigationsRequest) throws AccessDeniedException, InternalServerException, ValidationException, ResourceNotFoundException, TooManyRequestsException, AwsServiceException, SdkClientException, DetectiveException Detective investigations lets you investigate IAM users and IAM roles using indicators of compromise. An indicator of compromise (IOC) is an artifact observed in or on a network, system, or environment that can (with a high level of confidence) identify malicious activity or a security incident.
ListInvestigationslists all active Detective investigations.
This is a convenience which creates an instance of the
ListInvestigationsRequest.Builderavoiding the need to create one manually viaListInvestigationsRequest.builder()- Parameters:
listInvestigationsRequest- AConsumerthat will call methods onListInvestigationsRequest.Builderto create a request.- Returns:
- Result of the ListInvestigations operation returned by the service.
- See Also:
-
listInvitations
default ListInvitationsResponse listInvitations(ListInvitationsRequest listInvitationsRequest) throws AccessDeniedException, InternalServerException, ValidationException, AwsServiceException, SdkClientException, DetectiveException Retrieves the list of open and accepted behavior graph invitations for the member account. This operation can only be called by an invited member account.
Open invitations are invitations that the member account has not responded to.
The results do not include behavior graphs for which the member account declined the invitation. The results also do not include behavior graphs that the member account resigned from or was removed from.
- Parameters:
listInvitationsRequest-- Returns:
- Result of the ListInvitations operation returned by the service.
- See Also:
-
listInvitations
default ListInvitationsResponse listInvitations(Consumer<ListInvitationsRequest.Builder> listInvitationsRequest) throws AccessDeniedException, InternalServerException, ValidationException, AwsServiceException, SdkClientException, DetectiveException Retrieves the list of open and accepted behavior graph invitations for the member account. This operation can only be called by an invited member account.
Open invitations are invitations that the member account has not responded to.
The results do not include behavior graphs for which the member account declined the invitation. The results also do not include behavior graphs that the member account resigned from or was removed from.
This is a convenience which creates an instance of the
ListInvitationsRequest.Builderavoiding the need to create one manually viaListInvitationsRequest.builder()- Parameters:
listInvitationsRequest- AConsumerthat will call methods onListInvitationsRequest.Builderto create a request.- Returns:
- Result of the ListInvitations operation returned by the service.
- See Also:
-
listInvitationsPaginator
default ListInvitationsIterable listInvitationsPaginator(ListInvitationsRequest listInvitationsRequest) throws AccessDeniedException, InternalServerException, ValidationException, AwsServiceException, SdkClientException, DetectiveException This is a variant of
listInvitations(software.amazon.awssdk.services.detective.model.ListInvitationsRequest)operation. The return type is a custom iterable that can be used to iterate through all the pages. SDK will internally handle making service calls for you.When this operation is called, a custom iterable is returned but no service calls are made yet. So there is no guarantee that the request is valid. As you iterate through the iterable, SDK will start lazily loading response pages by making service calls until there are no pages left or your iteration stops. If there are errors in your request, you will see the failures only after you start iterating through the iterable.
The following are few ways to iterate through the response pages:
1) Using a Stream
2) Using For loopsoftware.amazon.awssdk.services.detective.paginators.ListInvitationsIterable responses = client.listInvitationsPaginator(request); responses.stream().forEach(....);{ @code software.amazon.awssdk.services.detective.paginators.ListInvitationsIterable responses = client .listInvitationsPaginator(request); for (software.amazon.awssdk.services.detective.model.ListInvitationsResponse response : responses) { // do something; } }3) Use iterator directlysoftware.amazon.awssdk.services.detective.paginators.ListInvitationsIterable responses = client.listInvitationsPaginator(request); responses.iterator().forEachRemaining(....);Please notice that the configuration of MaxResults won't limit the number of results you get with the paginator. It only limits the number of results in each page.
Note: If you prefer to have control on service calls, use the
listInvitations(software.amazon.awssdk.services.detective.model.ListInvitationsRequest)operation.- Parameters:
listInvitationsRequest-- Returns:
- A custom iterable that can be used to iterate through all the response pages.
- See Also:
-
listInvitationsPaginator
default ListInvitationsIterable listInvitationsPaginator(Consumer<ListInvitationsRequest.Builder> listInvitationsRequest) throws AccessDeniedException, InternalServerException, ValidationException, AwsServiceException, SdkClientException, DetectiveException This is a variant of
listInvitations(software.amazon.awssdk.services.detective.model.ListInvitationsRequest)operation. The return type is a custom iterable that can be used to iterate through all the pages. SDK will internally handle making service calls for you.When this operation is called, a custom iterable is returned but no service calls are made yet. So there is no guarantee that the request is valid. As you iterate through the iterable, SDK will start lazily loading response pages by making service calls until there are no pages left or your iteration stops. If there are errors in your request, you will see the failures only after you start iterating through the iterable.
The following are few ways to iterate through the response pages:
1) Using a Stream
2) Using For loopsoftware.amazon.awssdk.services.detective.paginators.ListInvitationsIterable responses = client.listInvitationsPaginator(request); responses.stream().forEach(....);{ @code software.amazon.awssdk.services.detective.paginators.ListInvitationsIterable responses = client .listInvitationsPaginator(request); for (software.amazon.awssdk.services.detective.model.ListInvitationsResponse response : responses) { // do something; } }3) Use iterator directlysoftware.amazon.awssdk.services.detective.paginators.ListInvitationsIterable responses = client.listInvitationsPaginator(request); responses.iterator().forEachRemaining(....);Please notice that the configuration of MaxResults won't limit the number of results you get with the paginator. It only limits the number of results in each page.
Note: If you prefer to have control on service calls, use the
listInvitations(software.amazon.awssdk.services.detective.model.ListInvitationsRequest)operation.
This is a convenience which creates an instance of the
ListInvitationsRequest.Builderavoiding the need to create one manually viaListInvitationsRequest.builder()- Parameters:
listInvitationsRequest- AConsumerthat will call methods onListInvitationsRequest.Builderto create a request.- Returns:
- A custom iterable that can be used to iterate through all the response pages.
- See Also:
-
listMembers
default ListMembersResponse listMembers(ListMembersRequest listMembersRequest) throws AccessDeniedException, InternalServerException, ResourceNotFoundException, ValidationException, AwsServiceException, SdkClientException, DetectiveException Retrieves the list of member accounts for a behavior graph.
For invited accounts, the results do not include member accounts that were removed from the behavior graph.
For the organization behavior graph, the results do not include organization accounts that the Detective administrator account has not enabled as member accounts.
- Parameters:
listMembersRequest-- Returns:
- Result of the ListMembers operation returned by the service.
- See Also:
-
listMembers
default ListMembersResponse listMembers(Consumer<ListMembersRequest.Builder> listMembersRequest) throws AccessDeniedException, InternalServerException, ResourceNotFoundException, ValidationException, AwsServiceException, SdkClientException, DetectiveException Retrieves the list of member accounts for a behavior graph.
For invited accounts, the results do not include member accounts that were removed from the behavior graph.
For the organization behavior graph, the results do not include organization accounts that the Detective administrator account has not enabled as member accounts.
This is a convenience which creates an instance of the
ListMembersRequest.Builderavoiding the need to create one manually viaListMembersRequest.builder()- Parameters:
listMembersRequest- AConsumerthat will call methods onListMembersRequest.Builderto create a request.- Returns:
- Result of the ListMembers operation returned by the service.
- See Also:
-
listMembersPaginator
default ListMembersIterable listMembersPaginator(ListMembersRequest listMembersRequest) throws AccessDeniedException, InternalServerException, ResourceNotFoundException, ValidationException, AwsServiceException, SdkClientException, DetectiveException This is a variant of
listMembers(software.amazon.awssdk.services.detective.model.ListMembersRequest)operation. The return type is a custom iterable that can be used to iterate through all the pages. SDK will internally handle making service calls for you.When this operation is called, a custom iterable is returned but no service calls are made yet. So there is no guarantee that the request is valid. As you iterate through the iterable, SDK will start lazily loading response pages by making service calls until there are no pages left or your iteration stops. If there are errors in your request, you will see the failures only after you start iterating through the iterable.
The following are few ways to iterate through the response pages:
1) Using a Stream
2) Using For loopsoftware.amazon.awssdk.services.detective.paginators.ListMembersIterable responses = client.listMembersPaginator(request); responses.stream().forEach(....);{ @code software.amazon.awssdk.services.detective.paginators.ListMembersIterable responses = client.listMembersPaginator(request); for (software.amazon.awssdk.services.detective.model.ListMembersResponse response : responses) { // do something; } }3) Use iterator directlysoftware.amazon.awssdk.services.detective.paginators.ListMembersIterable responses = client.listMembersPaginator(request); responses.iterator().forEachRemaining(....);Please notice that the configuration of MaxResults won't limit the number of results you get with the paginator. It only limits the number of results in each page.
Note: If you prefer to have control on service calls, use the
listMembers(software.amazon.awssdk.services.detective.model.ListMembersRequest)operation.- Parameters:
listMembersRequest-- Returns:
- A custom iterable that can be used to iterate through all the response pages.
- See Also:
-
listMembersPaginator
default ListMembersIterable listMembersPaginator(Consumer<ListMembersRequest.Builder> listMembersRequest) throws AccessDeniedException, InternalServerException, ResourceNotFoundException, ValidationException, AwsServiceException, SdkClientException, DetectiveException This is a variant of
listMembers(software.amazon.awssdk.services.detective.model.ListMembersRequest)operation. The return type is a custom iterable that can be used to iterate through all the pages. SDK will internally handle making service calls for you.When this operation is called, a custom iterable is returned but no service calls are made yet. So there is no guarantee that the request is valid. As you iterate through the iterable, SDK will start lazily loading response pages by making service calls until there are no pages left or your iteration stops. If there are errors in your request, you will see the failures only after you start iterating through the iterable.
The following are few ways to iterate through the response pages:
1) Using a Stream
2) Using For loopsoftware.amazon.awssdk.services.detective.paginators.ListMembersIterable responses = client.listMembersPaginator(request); responses.stream().forEach(....);{ @code software.amazon.awssdk.services.detective.paginators.ListMembersIterable responses = client.listMembersPaginator(request); for (software.amazon.awssdk.services.detective.model.ListMembersResponse response : responses) { // do something; } }3) Use iterator directlysoftware.amazon.awssdk.services.detective.paginators.ListMembersIterable responses = client.listMembersPaginator(request); responses.iterator().forEachRemaining(....);Please notice that the configuration of MaxResults won't limit the number of results you get with the paginator. It only limits the number of results in each page.
Note: If you prefer to have control on service calls, use the
listMembers(software.amazon.awssdk.services.detective.model.ListMembersRequest)operation.
This is a convenience which creates an instance of the
ListMembersRequest.Builderavoiding the need to create one manually viaListMembersRequest.builder()- Parameters:
listMembersRequest- AConsumerthat will call methods onListMembersRequest.Builderto create a request.- Returns:
- A custom iterable that can be used to iterate through all the response pages.
- See Also:
-
listOrganizationAdminAccounts
default ListOrganizationAdminAccountsResponse listOrganizationAdminAccounts(ListOrganizationAdminAccountsRequest listOrganizationAdminAccountsRequest) throws AccessDeniedException, InternalServerException, ValidationException, TooManyRequestsException, AwsServiceException, SdkClientException, DetectiveException Returns information about the Detective administrator account for an organization. Can only be called by the organization management account.
- Parameters:
listOrganizationAdminAccountsRequest-- Returns:
- Result of the ListOrganizationAdminAccounts operation returned by the service.
- See Also:
-
listOrganizationAdminAccounts
default ListOrganizationAdminAccountsResponse listOrganizationAdminAccounts(Consumer<ListOrganizationAdminAccountsRequest.Builder> listOrganizationAdminAccountsRequest) throws AccessDeniedException, InternalServerException, ValidationException, TooManyRequestsException, AwsServiceException, SdkClientException, DetectiveException Returns information about the Detective administrator account for an organization. Can only be called by the organization management account.
This is a convenience which creates an instance of the
ListOrganizationAdminAccountsRequest.Builderavoiding the need to create one manually viaListOrganizationAdminAccountsRequest.builder()- Parameters:
listOrganizationAdminAccountsRequest- AConsumerthat will call methods onListOrganizationAdminAccountsRequest.Builderto create a request.- Returns:
- Result of the ListOrganizationAdminAccounts operation returned by the service.
- See Also:
-
listOrganizationAdminAccountsPaginator
default ListOrganizationAdminAccountsIterable listOrganizationAdminAccountsPaginator(ListOrganizationAdminAccountsRequest listOrganizationAdminAccountsRequest) throws AccessDeniedException, InternalServerException, ValidationException, TooManyRequestsException, AwsServiceException, SdkClientException, DetectiveException This is a variant of
listOrganizationAdminAccounts(software.amazon.awssdk.services.detective.model.ListOrganizationAdminAccountsRequest)operation. The return type is a custom iterable that can be used to iterate through all the pages. SDK will internally handle making service calls for you.When this operation is called, a custom iterable is returned but no service calls are made yet. So there is no guarantee that the request is valid. As you iterate through the iterable, SDK will start lazily loading response pages by making service calls until there are no pages left or your iteration stops. If there are errors in your request, you will see the failures only after you start iterating through the iterable.
The following are few ways to iterate through the response pages:
1) Using a Stream
2) Using For loopsoftware.amazon.awssdk.services.detective.paginators.ListOrganizationAdminAccountsIterable responses = client.listOrganizationAdminAccountsPaginator(request); responses.stream().forEach(....);{ @code software.amazon.awssdk.services.detective.paginators.ListOrganizationAdminAccountsIterable responses = client .listOrganizationAdminAccountsPaginator(request); for (software.amazon.awssdk.services.detective.model.ListOrganizationAdminAccountsResponse response : responses) { // do something; } }3) Use iterator directlysoftware.amazon.awssdk.services.detective.paginators.ListOrganizationAdminAccountsIterable responses = client.listOrganizationAdminAccountsPaginator(request); responses.iterator().forEachRemaining(....);Please notice that the configuration of MaxResults won't limit the number of results you get with the paginator. It only limits the number of results in each page.
Note: If you prefer to have control on service calls, use the
listOrganizationAdminAccounts(software.amazon.awssdk.services.detective.model.ListOrganizationAdminAccountsRequest)operation.- Parameters:
listOrganizationAdminAccountsRequest-- Returns:
- A custom iterable that can be used to iterate through all the response pages.
- See Also:
-
listOrganizationAdminAccountsPaginator
default ListOrganizationAdminAccountsIterable listOrganizationAdminAccountsPaginator(Consumer<ListOrganizationAdminAccountsRequest.Builder> listOrganizationAdminAccountsRequest) throws AccessDeniedException, InternalServerException, ValidationException, TooManyRequestsException, AwsServiceException, SdkClientException, DetectiveException This is a variant of
listOrganizationAdminAccounts(software.amazon.awssdk.services.detective.model.ListOrganizationAdminAccountsRequest)operation. The return type is a custom iterable that can be used to iterate through all the pages. SDK will internally handle making service calls for you.When this operation is called, a custom iterable is returned but no service calls are made yet. So there is no guarantee that the request is valid. As you iterate through the iterable, SDK will start lazily loading response pages by making service calls until there are no pages left or your iteration stops. If there are errors in your request, you will see the failures only after you start iterating through the iterable.
The following are few ways to iterate through the response pages:
1) Using a Stream
2) Using For loopsoftware.amazon.awssdk.services.detective.paginators.ListOrganizationAdminAccountsIterable responses = client.listOrganizationAdminAccountsPaginator(request); responses.stream().forEach(....);{ @code software.amazon.awssdk.services.detective.paginators.ListOrganizationAdminAccountsIterable responses = client .listOrganizationAdminAccountsPaginator(request); for (software.amazon.awssdk.services.detective.model.ListOrganizationAdminAccountsResponse response : responses) { // do something; } }3) Use iterator directlysoftware.amazon.awssdk.services.detective.paginators.ListOrganizationAdminAccountsIterable responses = client.listOrganizationAdminAccountsPaginator(request); responses.iterator().forEachRemaining(....);Please notice that the configuration of MaxResults won't limit the number of results you get with the paginator. It only limits the number of results in each page.
Note: If you prefer to have control on service calls, use the
listOrganizationAdminAccounts(software.amazon.awssdk.services.detective.model.ListOrganizationAdminAccountsRequest)operation.
This is a convenience which creates an instance of the
ListOrganizationAdminAccountsRequest.Builderavoiding the need to create one manually viaListOrganizationAdminAccountsRequest.builder()- Parameters:
listOrganizationAdminAccountsRequest- AConsumerthat will call methods onListOrganizationAdminAccountsRequest.Builderto create a request.- Returns:
- A custom iterable that can be used to iterate through all the response pages.
- See Also:
-
listTagsForResource
default ListTagsForResourceResponse listTagsForResource(ListTagsForResourceRequest listTagsForResourceRequest) throws AccessDeniedException, InternalServerException, ValidationException, ResourceNotFoundException, AwsServiceException, SdkClientException, DetectiveException Returns the tag values that are assigned to a behavior graph.
- Parameters:
listTagsForResourceRequest-- Returns:
- Result of the ListTagsForResource operation returned by the service.
- See Also:
-
listTagsForResource
default ListTagsForResourceResponse listTagsForResource(Consumer<ListTagsForResourceRequest.Builder> listTagsForResourceRequest) throws AccessDeniedException, InternalServerException, ValidationException, ResourceNotFoundException, AwsServiceException, SdkClientException, DetectiveException Returns the tag values that are assigned to a behavior graph.
This is a convenience which creates an instance of the
ListTagsForResourceRequest.Builderavoiding the need to create one manually viaListTagsForResourceRequest.builder()- Parameters:
listTagsForResourceRequest- AConsumerthat will call methods onListTagsForResourceRequest.Builderto create a request.- Returns:
- Result of the ListTagsForResource operation returned by the service.
- See Also:
-
rejectInvitation
default RejectInvitationResponse rejectInvitation(RejectInvitationRequest rejectInvitationRequest) throws AccessDeniedException, ConflictException, InternalServerException, ResourceNotFoundException, ValidationException, AwsServiceException, SdkClientException, DetectiveException Rejects an invitation to contribute the account data to a behavior graph. This operation must be called by an invited member account that has the
INVITEDstatus.RejectInvitationcannot be called by an organization account in the organization behavior graph. In the organization behavior graph, organization accounts do not receive an invitation.- Parameters:
rejectInvitationRequest-- Returns:
- Result of the RejectInvitation operation returned by the service.
- See Also:
-
rejectInvitation
default RejectInvitationResponse rejectInvitation(Consumer<RejectInvitationRequest.Builder> rejectInvitationRequest) throws AccessDeniedException, ConflictException, InternalServerException, ResourceNotFoundException, ValidationException, AwsServiceException, SdkClientException, DetectiveException Rejects an invitation to contribute the account data to a behavior graph. This operation must be called by an invited member account that has the
INVITEDstatus.RejectInvitationcannot be called by an organization account in the organization behavior graph. In the organization behavior graph, organization accounts do not receive an invitation.
This is a convenience which creates an instance of the
RejectInvitationRequest.Builderavoiding the need to create one manually viaRejectInvitationRequest.builder()- Parameters:
rejectInvitationRequest- AConsumerthat will call methods onRejectInvitationRequest.Builderto create a request.- Returns:
- Result of the RejectInvitation operation returned by the service.
- See Also:
-
startInvestigation
default StartInvestigationResponse startInvestigation(StartInvestigationRequest startInvestigationRequest) throws AccessDeniedException, InternalServerException, ValidationException, TooManyRequestsException, ResourceNotFoundException, AwsServiceException, SdkClientException, DetectiveException Detective investigations lets you investigate IAM users and IAM roles using indicators of compromise. An indicator of compromise (IOC) is an artifact observed in or on a network, system, or environment that can (with a high level of confidence) identify malicious activity or a security incident.
StartInvestigationinitiates an investigation on an entity in a behavior graph.- Parameters:
startInvestigationRequest-- Returns:
- Result of the StartInvestigation operation returned by the service.
- See Also:
-
startInvestigation
default StartInvestigationResponse startInvestigation(Consumer<StartInvestigationRequest.Builder> startInvestigationRequest) throws AccessDeniedException, InternalServerException, ValidationException, TooManyRequestsException, ResourceNotFoundException, AwsServiceException, SdkClientException, DetectiveException Detective investigations lets you investigate IAM users and IAM roles using indicators of compromise. An indicator of compromise (IOC) is an artifact observed in or on a network, system, or environment that can (with a high level of confidence) identify malicious activity or a security incident.
StartInvestigationinitiates an investigation on an entity in a behavior graph.
This is a convenience which creates an instance of the
StartInvestigationRequest.Builderavoiding the need to create one manually viaStartInvestigationRequest.builder()- Parameters:
startInvestigationRequest- AConsumerthat will call methods onStartInvestigationRequest.Builderto create a request.- Returns:
- Result of the StartInvestigation operation returned by the service.
- See Also:
-
startMonitoringMember
default StartMonitoringMemberResponse startMonitoringMember(StartMonitoringMemberRequest startMonitoringMemberRequest) throws AccessDeniedException, ConflictException, InternalServerException, ResourceNotFoundException, ServiceQuotaExceededException, ValidationException, AwsServiceException, SdkClientException, DetectiveException Sends a request to enable data ingest for a member account that has a status of
ACCEPTED_BUT_DISABLED.For valid member accounts, the status is updated as follows.
-
If Detective enabled the member account, then the new status is
ENABLED. -
If Detective cannot enable the member account, the status remains
ACCEPTED_BUT_DISABLED.
- Parameters:
startMonitoringMemberRequest-- Returns:
- Result of the StartMonitoringMember operation returned by the service.
- See Also:
-
-
startMonitoringMember
default StartMonitoringMemberResponse startMonitoringMember(Consumer<StartMonitoringMemberRequest.Builder> startMonitoringMemberRequest) throws AccessDeniedException, ConflictException, InternalServerException, ResourceNotFoundException, ServiceQuotaExceededException, ValidationException, AwsServiceException, SdkClientException, DetectiveException Sends a request to enable data ingest for a member account that has a status of
ACCEPTED_BUT_DISABLED.For valid member accounts, the status is updated as follows.
-
If Detective enabled the member account, then the new status is
ENABLED. -
If Detective cannot enable the member account, the status remains
ACCEPTED_BUT_DISABLED.
This is a convenience which creates an instance of the
StartMonitoringMemberRequest.Builderavoiding the need to create one manually viaStartMonitoringMemberRequest.builder()- Parameters:
startMonitoringMemberRequest- AConsumerthat will call methods onStartMonitoringMemberRequest.Builderto create a request.- Returns:
- Result of the StartMonitoringMember operation returned by the service.
- See Also:
-
-
tagResource
default TagResourceResponse tagResource(TagResourceRequest tagResourceRequest) throws AccessDeniedException, InternalServerException, ValidationException, ResourceNotFoundException, AwsServiceException, SdkClientException, DetectiveException Applies tag values to a behavior graph.
- Parameters:
tagResourceRequest-- Returns:
- Result of the TagResource operation returned by the service.
- See Also:
-
tagResource
default TagResourceResponse tagResource(Consumer<TagResourceRequest.Builder> tagResourceRequest) throws AccessDeniedException, InternalServerException, ValidationException, ResourceNotFoundException, AwsServiceException, SdkClientException, DetectiveException Applies tag values to a behavior graph.
This is a convenience which creates an instance of the
TagResourceRequest.Builderavoiding the need to create one manually viaTagResourceRequest.builder()- Parameters:
tagResourceRequest- AConsumerthat will call methods onTagResourceRequest.Builderto create a request.- Returns:
- Result of the TagResource operation returned by the service.
- See Also:
-
untagResource
default UntagResourceResponse untagResource(UntagResourceRequest untagResourceRequest) throws AccessDeniedException, InternalServerException, ValidationException, ResourceNotFoundException, AwsServiceException, SdkClientException, DetectiveException Removes tags from a behavior graph.
- Parameters:
untagResourceRequest-- Returns:
- Result of the UntagResource operation returned by the service.
- See Also:
-
untagResource
default UntagResourceResponse untagResource(Consumer<UntagResourceRequest.Builder> untagResourceRequest) throws AccessDeniedException, InternalServerException, ValidationException, ResourceNotFoundException, AwsServiceException, SdkClientException, DetectiveException Removes tags from a behavior graph.
This is a convenience which creates an instance of the
UntagResourceRequest.Builderavoiding the need to create one manually viaUntagResourceRequest.builder()- Parameters:
untagResourceRequest- AConsumerthat will call methods onUntagResourceRequest.Builderto create a request.- Returns:
- Result of the UntagResource operation returned by the service.
- See Also:
-
updateDatasourcePackages
default UpdateDatasourcePackagesResponse updateDatasourcePackages(UpdateDatasourcePackagesRequest updateDatasourcePackagesRequest) throws AccessDeniedException, InternalServerException, ResourceNotFoundException, ServiceQuotaExceededException, ValidationException, AwsServiceException, SdkClientException, DetectiveException Starts a data source packages for the behavior graph.
- Parameters:
updateDatasourcePackagesRequest-- Returns:
- Result of the UpdateDatasourcePackages operation returned by the service.
- See Also:
-
updateDatasourcePackages
default UpdateDatasourcePackagesResponse updateDatasourcePackages(Consumer<UpdateDatasourcePackagesRequest.Builder> updateDatasourcePackagesRequest) throws AccessDeniedException, InternalServerException, ResourceNotFoundException, ServiceQuotaExceededException, ValidationException, AwsServiceException, SdkClientException, DetectiveException Starts a data source packages for the behavior graph.
This is a convenience which creates an instance of the
UpdateDatasourcePackagesRequest.Builderavoiding the need to create one manually viaUpdateDatasourcePackagesRequest.builder()- Parameters:
updateDatasourcePackagesRequest- AConsumerthat will call methods onUpdateDatasourcePackagesRequest.Builderto create a request.- Returns:
- Result of the UpdateDatasourcePackages operation returned by the service.
- See Also:
-
updateInvestigationState
default UpdateInvestigationStateResponse updateInvestigationState(UpdateInvestigationStateRequest updateInvestigationStateRequest) throws AccessDeniedException, InternalServerException, ValidationException, ResourceNotFoundException, TooManyRequestsException, AwsServiceException, SdkClientException, DetectiveException Updates the state of an investigation.
- Parameters:
updateInvestigationStateRequest-- Returns:
- Result of the UpdateInvestigationState operation returned by the service.
- See Also:
-
updateInvestigationState
default UpdateInvestigationStateResponse updateInvestigationState(Consumer<UpdateInvestigationStateRequest.Builder> updateInvestigationStateRequest) throws AccessDeniedException, InternalServerException, ValidationException, ResourceNotFoundException, TooManyRequestsException, AwsServiceException, SdkClientException, DetectiveException Updates the state of an investigation.
This is a convenience which creates an instance of the
UpdateInvestigationStateRequest.Builderavoiding the need to create one manually viaUpdateInvestigationStateRequest.builder()- Parameters:
updateInvestigationStateRequest- AConsumerthat will call methods onUpdateInvestigationStateRequest.Builderto create a request.- Returns:
- Result of the UpdateInvestigationState operation returned by the service.
- See Also:
-
updateOrganizationConfiguration
default UpdateOrganizationConfigurationResponse updateOrganizationConfiguration(UpdateOrganizationConfigurationRequest updateOrganizationConfigurationRequest) throws AccessDeniedException, InternalServerException, ValidationException, TooManyRequestsException, AwsServiceException, SdkClientException, DetectiveException Updates the configuration for the Organizations integration in the current Region. Can only be called by the Detective administrator account for the organization.
- Parameters:
updateOrganizationConfigurationRequest-- Returns:
- Result of the UpdateOrganizationConfiguration operation returned by the service.
- See Also:
-
updateOrganizationConfiguration
default UpdateOrganizationConfigurationResponse updateOrganizationConfiguration(Consumer<UpdateOrganizationConfigurationRequest.Builder> updateOrganizationConfigurationRequest) throws AccessDeniedException, InternalServerException, ValidationException, TooManyRequestsException, AwsServiceException, SdkClientException, DetectiveException Updates the configuration for the Organizations integration in the current Region. Can only be called by the Detective administrator account for the organization.
This is a convenience which creates an instance of the
UpdateOrganizationConfigurationRequest.Builderavoiding the need to create one manually viaUpdateOrganizationConfigurationRequest.builder()- Parameters:
updateOrganizationConfigurationRequest- AConsumerthat will call methods onUpdateOrganizationConfigurationRequest.Builderto create a request.- Returns:
- Result of the UpdateOrganizationConfiguration operation returned by the service.
- See Also:
-
create
Create aDetectiveClientwith the region loaded from theDefaultAwsRegionProviderChainand credentials loaded from theDefaultCredentialsProvider. -
builder
Create a builder that can be used to configure and create aDetectiveClient. -
serviceMetadata
-
serviceClientConfiguration
Description copied from interface:SdkClientThe SDK service client configuration exposes client settings to the user, e.g., ClientOverrideConfiguration- Specified by:
serviceClientConfigurationin interfaceAwsClient- Specified by:
serviceClientConfigurationin interfaceSdkClient- Returns:
- SdkServiceClientConfiguration
-