Options
All
  • Public
  • Public/Protected
  • All
Menu

Namespace SecurityAssessment

A security assessment that provides an overall insight into your database security posture. The security assessment results are based on the analysis of your database configurations, user accounts, and security controls. For more information, see Security Assessment Overview.

Properties

Optional baselineAssessmentId

baselineAssessmentId: undefined | string

The ocid of a security assessment which is of type TEMPLATE_BASELINE, this will be null or empty when type is TEMPLATE_BASELINE.

Optional checks

checks: Array<Check>

The security checks to be evaluated for type template.

compartmentId

compartmentId: string

The OCID of the compartment that contains the security assessment.

Optional definedTags

definedTags: undefined | object

Defined tags for this resource. Each key is predefined and scoped to a namespace. For more information, see Resource Tags Example: {@code {"Operations": {"CostCenter": "42"}}}

Optional description

description: undefined | string

The description of the security assessment.

displayName

displayName: string

The display name of the security assessment.

Optional freeformTags

freeformTags: undefined | object

Free-form tags for this resource. Each tag is a simple key-value pair with no predefined name, type, or namespace. For more information, see Resource Tags

Example: {@code {\"Department\": \"Finance\"}}

id

id: string

The OCID of the security assessment.

Optional ignoredAssessmentIds

ignoredAssessmentIds: Array<any>

List containing maps as values. Example: {@code {"Operations": [ {"CostCenter": "42"} ] }}

Optional ignoredTargets

ignoredTargets: Array<any>

List containing maps as values. Example: {@code {"Operations": [ {"CostCenter": "42"} ] }}

Optional isAssessmentScheduled

isAssessmentScheduled: undefined | false | true

Indicates whether the assessment is scheduled to run.

Optional isBaseline

isBaseline: undefined | false | true

Indicates whether or not the security assessment is set as a baseline. This is applicable only for saved security assessments.

Optional isDeviatedFromBaseline

isDeviatedFromBaseline: undefined | false | true

Indicates if the assessment has deviated from the baseline.

Optional lastComparedBaselineId

lastComparedBaselineId: undefined | string

The OCID of the baseline against which the latest security assessment was compared.

Optional lifecycleDetails

lifecycleDetails: undefined | string

Details about the current state of the security assessment.

lifecycleState

The current state of the security assessment.

Optional link

link: undefined | string

The summary of findings for the security assessment

Optional schedule

schedule: undefined | string

Schedule to save the assessment periodically in the specified format: ;

Allowed version strings - \"v1\" v1's version specific schedule - Each of the above fields potentially introduce constraints. A workrequest is created only when clock time satisfies all the constraints. Constraints introduced: 1. seconds = (So, the allowed range for is [0, 59]) 2. minutes = (So, the allowed range for is [0, 59]) 3. hours = (So, the allowed range for is [0, 23]) can be either '*' (without quotes or a number between 1(Monday) and 7(Sunday)) 4. No constraint introduced when it is '*'. When not, day of week must equal the given value can be either '*' (without quotes or a number between 1 and 28) 5. No constraint introduced when it is '*'. When not, day of month must equal the given value

Optional scheduleSecurityAssessmentId

scheduleSecurityAssessmentId: undefined | string

The OCID of the security assessment that is responsible for creating this scheduled save assessment.

Optional statistics

statistics: model.SecurityAssessmentStatistics

Optional systemTags

systemTags: undefined | object

System tags for this resource. Each key is predefined and scoped to a namespace. For more information, see Resource Tags. Example: {@code {"orcl-cloud": {"free-tier-retained": "true"}}}

Optional targetDatabaseGroupId

targetDatabaseGroupId: undefined | string

The OCID of the target database group that the group assessment is created for.

targetIds

targetIds: Array<string>

Array of database target OCIDs.

Optional targetType

targetType: model.SecurityAssessmentTargetType

Indicates whether the security assessment is for a target database or a target database group.

Optional targetVersion

targetVersion: undefined | string

The version of the target database.

Optional templateAssessmentId

templateAssessmentId: undefined | string

The ocid of a security assessment which is of type TEMPLATE, this will be null or empty when type is TEMPLATE.

timeCreated

timeCreated: Date

The date and time the security assessment was created, in the format defined by RFC3339.

Optional timeLastAssessed

timeLastAssessed: Date

The date and time the security assessment was last executed, in the format defined by RFC3339.

timeUpdated

timeUpdated: Date

The date and time the security assessment was last updated, in the format defined by RFC3339.

Optional triggeredBy

triggeredBy: TriggeredBy

Indicates whether the security assessment was created by system or by a user.

type

type: Type

The type of this security assessment. The possible types are:

LATEST: The most up-to-date assessment that is running automatically for a target. It is system generated. SAVED: A saved security assessment. LATEST assessments are always saved in order to maintain the history of runs. A SAVED assessment is also generated by a 'refresh' action (triggered by the user). SAVE_SCHEDULE: The schedule for periodic saves of LATEST assessments. COMPARTMENT: An automatically managed assessment type that stores all details of targets in one compartment. This type keeps an up-to-date assessment of all database risks in one compartment. It is automatically updated when the latest assessment or refresh action is executed. It is also automatically updated when a target is deleted or move to a different compartment.

Functions

getDeserializedJsonObj

getJsonObj