Class Evidence
- All Implemented Interfaces:
Serializable,SdkPojo,ToCopyableBuilder<Evidence.Builder,Evidence>
A record that contains the information needed to demonstrate compliance with the requirements specified by a control. Examples of evidence include change activity invoked by a user, or a system configuration snapshot.
- See Also:
-
Nested Class Summary
Nested Classes -
Method Summary
Modifier and TypeMethodDescriptionfinal StringSpecifies whether the evidence is included in the assessment report.The names and values that are used by the evidence event.final StringThe identifier for the Amazon Web Services account.final StringThe Amazon Web Services account that the evidence is collected from, and its organization path.static Evidence.Builderbuilder()final StringThe evaluation status for automated evidence that falls under the compliance check category.final StringThe data source where the evidence was collected from.final booleanfinal booleanequalsBySdkFields(Object obj) Indicates whether some other object is "equal to" this one by SDK fields.final StringThe name of the evidence event.final StringThe Amazon Web Services service that the evidence is collected from.final StringThe identifier for the Amazon Web Services account.final StringThe type of automated evidence.final StringThe identifier for the folder that the evidence is stored in.final <T> Optional<T> getValueForField(String fieldName, Class<T> clazz) final booleanFor responses, this returns true if the service returned a value for the Attributes property.final inthashCode()final booleanFor responses, this returns true if the service returned a value for the ResourcesIncluded property.final StringiamId()The unique identifier for the user or role that's associated with the evidence.final Stringid()The identifier for the evidence.The list of resources that are assessed to generate the evidence.static Class<? extends Evidence.Builder> final Instanttime()The timestamp that represents when the evidence was collected.Take this object and create a builder that contains all of the current property values of this object.final StringtoString()Returns a string representation of this object.Methods inherited from interface software.amazon.awssdk.utils.builder.ToCopyableBuilder
copy
-
Method Details
-
dataSource
The data source where the evidence was collected from.
- Returns:
- The data source where the evidence was collected from.
-
evidenceAwsAccountId
The identifier for the Amazon Web Services account.
- Returns:
- The identifier for the Amazon Web Services account.
-
time
The timestamp that represents when the evidence was collected.
- Returns:
- The timestamp that represents when the evidence was collected.
-
eventSource
The Amazon Web Services service that the evidence is collected from.
- Returns:
- The Amazon Web Services service that the evidence is collected from.
-
eventName
The name of the evidence event.
- Returns:
- The name of the evidence event.
-
evidenceByType
The type of automated evidence.
- Returns:
- The type of automated evidence.
-
hasResourcesIncluded
public final boolean hasResourcesIncluded()For responses, this returns true if the service returned a value for the ResourcesIncluded property. This DOES NOT check that the value is non-empty (for which, you should check theisEmpty()method on the property). This is useful because the SDK will never return a null collection or map, but you may need to differentiate between the service returning nothing (or null) and the service returning an empty collection or map. For requests, this returns true if a value for the property was specified in the request builder, and false if a value was not specified. -
resourcesIncluded
The list of resources that are assessed to generate the evidence.
Attempts to modify the collection returned by this method will result in an UnsupportedOperationException.
This method will never return null. If you would like to know whether the service returned this field (so that you can differentiate between null and empty), you can use the
hasResourcesIncluded()method.- Returns:
- The list of resources that are assessed to generate the evidence.
-
hasAttributes
public final boolean hasAttributes()For responses, this returns true if the service returned a value for the Attributes property. This DOES NOT check that the value is non-empty (for which, you should check theisEmpty()method on the property). This is useful because the SDK will never return a null collection or map, but you may need to differentiate between the service returning nothing (or null) and the service returning an empty collection or map. For requests, this returns true if a value for the property was specified in the request builder, and false if a value was not specified. -
attributes
The names and values that are used by the evidence event. This includes an attribute name (such as
allowUsersToChangePassword) and value (such astrueorfalse).Attempts to modify the collection returned by this method will result in an UnsupportedOperationException.
This method will never return null. If you would like to know whether the service returned this field (so that you can differentiate between null and empty), you can use the
hasAttributes()method.- Returns:
- The names and values that are used by the evidence event. This includes an attribute name (such as
allowUsersToChangePassword) and value (such astrueorfalse).
-
iamId
The unique identifier for the user or role that's associated with the evidence.
- Returns:
- The unique identifier for the user or role that's associated with the evidence.
-
complianceCheck
The evaluation status for automated evidence that falls under the compliance check category.
-
Audit Manager classes evidence as non-compliant if Security Hub reports a Fail result, or if Config reports a Non-compliant result.
-
Audit Manager classes evidence as compliant if Security Hub reports a Pass result, or if Config reports a Compliant result.
-
If a compliance check isn't available or applicable, then no compliance evaluation can be made for that evidence. This is the case if the evidence uses Config or Security Hub as the underlying data source type, but those services aren't enabled. This is also the case if the evidence uses an underlying data source type that doesn't support compliance checks (such as manual evidence, Amazon Web Services API calls, or CloudTrail).
- Returns:
- The evaluation status for automated evidence that falls under the compliance check category.
-
Audit Manager classes evidence as non-compliant if Security Hub reports a Fail result, or if Config reports a Non-compliant result.
-
Audit Manager classes evidence as compliant if Security Hub reports a Pass result, or if Config reports a Compliant result.
-
If a compliance check isn't available or applicable, then no compliance evaluation can be made for that evidence. This is the case if the evidence uses Config or Security Hub as the underlying data source type, but those services aren't enabled. This is also the case if the evidence uses an underlying data source type that doesn't support compliance checks (such as manual evidence, Amazon Web Services API calls, or CloudTrail).
-
-
-
awsOrganization
The Amazon Web Services account that the evidence is collected from, and its organization path.
- Returns:
- The Amazon Web Services account that the evidence is collected from, and its organization path.
-
awsAccountId
The identifier for the Amazon Web Services account.
- Returns:
- The identifier for the Amazon Web Services account.
-
evidenceFolderId
The identifier for the folder that the evidence is stored in.
- Returns:
- The identifier for the folder that the evidence is stored in.
-
id
-
assessmentReportSelection
Specifies whether the evidence is included in the assessment report.
- Returns:
- Specifies whether the evidence is included in the assessment report.
-
toBuilder
Description copied from interface:ToCopyableBuilderTake this object and create a builder that contains all of the current property values of this object.- Specified by:
toBuilderin interfaceToCopyableBuilder<Evidence.Builder,Evidence> - Returns:
- a builder for type T
-
builder
-
serializableBuilderClass
-
hashCode
-
equals
-
equalsBySdkFields
Description copied from interface:SdkPojoIndicates whether some other object is "equal to" this one by SDK fields. An SDK field is a modeled, non-inherited field in anSdkPojoclass, and is generated based on a service model.If an
SdkPojoclass does not have any inherited fields,equalsBySdkFieldsandequalsare essentially the same.- Specified by:
equalsBySdkFieldsin interfaceSdkPojo- Parameters:
obj- the object to be compared with- Returns:
- true if the other object equals to this object by sdk fields, false otherwise.
-
toString
-
getValueForField
-
sdkFields
-
sdkFieldNameToField
- Specified by:
sdkFieldNameToFieldin interfaceSdkPojo- Returns:
- The mapping between the field name and its corresponding field.
-