SecurityHub / Client / update_security_hub_configuration

update_security_hub_configuration#

SecurityHub.Client.update_security_hub_configuration(**kwargs)#

Updates configuration options for Security Hub.

See also: AWS API Documentation

Request Syntax

response = client.update_security_hub_configuration(
    AutoEnableControls=True|False,
    ControlFindingGenerator='STANDARD_CONTROL'|'SECURITY_CONTROL'
)
Parameters:
  • AutoEnableControls (boolean) –

    Whether to automatically enable new controls when they are added to standards that are enabled.

    By default, this is set to true , and new controls are enabled automatically. To not automatically enable new controls, set this to false .

  • ControlFindingGenerator (string) –

    Updates whether the calling account has consolidated control findings turned on. If the value for this field is set to SECURITY_CONTROL , Security Hub generates a single finding for a control check even when the check applies to multiple enabled standards.

    If the value for this field is set to STANDARD_CONTROL , Security Hub generates separate findings for a control check when the check applies to multiple enabled standards.

    For accounts that are part of an organization, this value can only be updated in the administrator account.

Return type:

dict

Returns:

Response Syntax

{}

Response Structure

  • (dict) –

Exceptions

  • SecurityHub.Client.exceptions.InternalException

  • SecurityHub.Client.exceptions.InvalidInputException

  • SecurityHub.Client.exceptions.InvalidAccessException

  • SecurityHub.Client.exceptions.LimitExceededException

  • SecurityHub.Client.exceptions.ResourceNotFoundException