Loading

Inspector

Version 3.13.4 (View all)
Compatible Kibana version(s) ~8.16.6
~8.17.4
8.18.0 or higher
9.0.0 or higher
Supported Serverless project types
What's this?
Security
Observability
Subscription level
What's this?
Basic

The Amazon Inspector integration collects and parses data from Amazon Inspector Findings REST APIs.

Important

Extra AWS charges on API requests will be generated by this integration. Check API Requests for more details.

This module is tested against Amazon Inspector API version 2.0.

Agentless integrations allow you to collect data without having to manage Elastic Agent in your cloud. They make manual agent deployment unnecessary, so you can focus on your data instead of the agent that collects it. For more information, refer to Agentless integrations and the Agentless integrations FAQ.

Agentless deployments are only supported in Elastic Serverless and Elastic Cloud environments. This functionality is in beta and is subject to change. Beta features are not subject to the support SLA of official GA features.

  1. Login to https://console.aws.amazon.com/.
  2. Go to https://console.aws.amazon.com/iam/ to access the IAM console.
  3. On the navigation menu, choose Users.
  4. Choose your IAM user name.
  5. Select Create access key from the Security Credentials tab.
  6. To see the new access key, choose Show.
  • For the current integration package, it is compulsory to add Secret Access Key and Access Key ID.
  • This data stream doesn't support setting a Role ARN.
  • Ensure your IAM has the inspector2:ListFindings permission granted. Without this permission, API requests will be denied.

This is the Inspector data stream.

ECS Field Reference

Please refer to the following document for detailed information on ECS fields.