RuleDefinition - Amazon GuardDuty
Services or capabilities described in AWS documentation might vary by Region. To see the differences applicable to the AWS European Sovereign Cloud Region, see the AWS European Sovereign Cloud User Guide.

RuleDefinition

Contains the detection logic for a custom detection rule.

Contents

expression

The detection logic expression for the rule.

Type: String

Length Constraints: Minimum length of 1. Maximum length of 4096.

Required: Yes

See Also

For more information about using this API in one of the language-specific AWS SDKs, see the following: