[aws]: inspector2/guarduty/securityhub - no role_arn or session_token #10784
Labels
bug
Something isn't working, use only for issues
Integration:aws
AWS
Team:Security-Service Integrations
Security Service Integrations Team [elastic/security-service-integrations]
troubleshooting
Integration Name
AWS [aws]
Dataset Name
guardduty
Integration Version
v2.22.1
Agent Version
8.15.0
Agent Output Type
elasticsearch
Elasticsearch Version
8.15.0
OS Version and Architecture
(Cloud)
Software/API Version
No response
Error Message
Same for inspector2 and security hub.
Best I can determine, if
integrations/packages/aws/data_stream/securityhub_findings/agent/stream/httpjson.yml.hbs
Line 37 in e6362aa
Event Original
No response
What did you do?
Nodes in EKS, have a valid pod role assigned; Want this integration to use those credentials to assume
role_arn
into a foreign (in-org) account to access securityhub and other services.What did you see?
Nothing, but digging the logs yielded the above
What did you expect to see?
Happy security dashboards!
Anything else?
No response
The text was updated successfully, but these errors were encountered: