Class Indicator

java.lang.Object
software.amazon.awssdk.services.detective.model.Indicator
All Implemented Interfaces:
Serializable, SdkPojo, ToCopyableBuilder<Indicator.Builder,Indicator>

@Generated("software.amazon.awssdk:codegen") public final class Indicator extends Object implements SdkPojo, Serializable, ToCopyableBuilder<Indicator.Builder,Indicator>

Detective investigations triages indicators of compromises such as a finding and surfaces only the most critical and suspicious issues, so you can focus on high-level investigations. An Indicator lets you determine if an Amazon Web Services resource is involved in unusual activity that could indicate malicious behavior and its impact.

See Also:
  • Method Details

    • indicatorType

      public final IndicatorType indicatorType()

      The type of indicator.

      If the service returns an enum value that is not available in the current SDK version, indicatorType will return IndicatorType.UNKNOWN_TO_SDK_VERSION. The raw value returned by the service is available from indicatorTypeAsString().

      Returns:
      The type of indicator.
      See Also:
    • indicatorTypeAsString

      public final String indicatorTypeAsString()

      The type of indicator.

      If the service returns an enum value that is not available in the current SDK version, indicatorType will return IndicatorType.UNKNOWN_TO_SDK_VERSION. The raw value returned by the service is available from indicatorTypeAsString().

      Returns:
      The type of indicator.
      See Also:
    • indicatorDetail

      public final IndicatorDetail indicatorDetail()

      Details about the indicators of compromise that are used to determine if a resource is involved in a security incident. An indicator of compromise (IOC) is an artifact observed in or on a network, system, or environment that can (with a high level of confidence) identify malicious activity or a security incident.

      Returns:
      Details about the indicators of compromise that are used to determine if a resource is involved in a security incident. An indicator of compromise (IOC) is an artifact observed in or on a network, system, or environment that can (with a high level of confidence) identify malicious activity or a security incident.
    • toBuilder

      public Indicator.Builder toBuilder()
      Description copied from interface: ToCopyableBuilder
      Take this object and create a builder that contains all of the current property values of this object.
      Specified by:
      toBuilder in interface ToCopyableBuilder<Indicator.Builder,Indicator>
      Returns:
      a builder for type T
    • builder

      public static Indicator.Builder builder()
    • serializableBuilderClass

      public static Class<? extends Indicator.Builder> serializableBuilderClass()
    • hashCode

      public final int hashCode()
      Overrides:
      hashCode in class Object
    • equals

      public final boolean equals(Object obj)
      Overrides:
      equals in class Object
    • equalsBySdkFields

      public final boolean equalsBySdkFields(Object obj)
      Description copied from interface: SdkPojo
      Indicates whether some other object is "equal to" this one by SDK fields. An SDK field is a modeled, non-inherited field in an SdkPojo class, and is generated based on a service model.

      If an SdkPojo class does not have any inherited fields, equalsBySdkFields and equals are essentially the same.

      Specified by:
      equalsBySdkFields in interface SdkPojo
      Parameters:
      obj - the object to be compared with
      Returns:
      true if the other object equals to this object by sdk fields, false otherwise.
    • toString

      public final String toString()
      Returns a string representation of this object. This is useful for testing and debugging. Sensitive data will be redacted from this string using a placeholder value.
      Overrides:
      toString in class Object
    • getValueForField

      public final <T> Optional<T> getValueForField(String fieldName, Class<T> clazz)
    • sdkFields

      public final List<SdkField<?>> sdkFields()
      Specified by:
      sdkFields in interface SdkPojo
      Returns:
      List of SdkField in this POJO. May be empty list but should never be null.