Updates a compliance pack in a specified account group.
Operation description
This topic provides an example of how to change the value of a parameter for the eip-bandwidth-limit rule template to 20 in the cp-fdc8626622af00f9**** compliance pack that belongs to the ca-f632626622af0079**** account group.
Try it now
Test
RAM authorization
|
Action |
Access level |
Resource type |
Condition key |
Dependent action |
|
config:UpdateAggregateCompliancePack |
update |
*AggregateCompliancePack
|
None | None |
Request parameters
|
Parameter |
Type |
Required |
Description |
Example |
| CompliancePackId |
string |
Yes |
The ID of the compliance pack. For more information, see ListAggregateCompliancePacks. |
cp-fdc8626622af00f9**** |
| Description |
string |
No |
The description of the compliance pack. |
基于等保2.0三级标准,提供持续检测合规性的建议模板,帮助您提前自检并修复问题,以便快速通过正式检测。 |
| RiskLevel |
integer |
No |
The risk level of the compliance pack. Valid values:
|
1 |
| ConfigRules |
array<object> |
No |
The rules in the compliance pack. If you leave this parameter empty when you modify the compliance pack, the existing rules are not changed. If you specify new rules, the new rules replace the existing ones. |
|
|
array<object> |
No |
None |
||
| ManagedRuleIdentifier |
string |
No |
The identifier of the rule template. CloudConfig automatically creates a rule based on the rule template identifier and adds the rule to the compliance pack. You must specify either |
eip-bandwidth-limit |
| ConfigRuleParameters |
array |
No |
The parameters of the rule. |
|
|
object |
No |
None |
||
| ParameterName |
string |
No |
The name of the rule parameter. You must specify |
bandwidth |
| ParameterValue |
string |
No |
The value of the rule parameter. You must specify |
20 |
| ConfigRuleId |
string |
No |
The rule ID. CloudConfig adds the existing rule to the compliance pack. You must specify either |
cr-e918626622af000f**** |
| ConfigRuleName |
string |
No |
The name of the rule. |
检测闲置弹性公网IP |
| Description |
string |
No |
The description of the rule. |
弹性公网已绑定到ECS或者NAT实例,非闲置状态,视为“合规”。 |
| RiskLevel |
integer |
No |
The risk level of the rule. Valid values:
|
1 |
| ClientToken |
string |
No |
A client token. It is used to ensure the idempotence of the request. Generate a value that is unique among different requests. The |
1594295238-f9361358-5843-4294-8d30-b5183fac**** |
| AggregatorId |
string |
Yes |
The ID of the account group. For more information, see ListAggregators. |
ca-f632626622af0079**** |
| CompliancePackName |
string |
No |
The name of the compliance pack. For more information, see ListAggregateCompliancePacks. |
等保三级预检合规包 |
| RegionIdsScope |
string |
No |
The compliance pack is effective only for resources in the specified regions. Separate multiple region IDs with commas (,). |
cn-hangzhou |
| ExcludeRegionIdsScope |
string |
No |
The rules are not effective for resources in the specified regions. Resources in these regions are not evaluated. Separate multiple region IDs with commas (,). |
cn-shanghai |
| ExcludeResourceIdsScope |
string |
No |
The compliance pack is not effective for the specified resources. The specified resources are not evaluated. Separate multiple resource IDs with commas (,). |
eip-8vbf3x310fn56ijfd**** |
| ResourceIdsScope |
string |
No |
The rules are effective only for the specified resources. Separate multiple resource IDs with commas (,). |
lb-5cmbowstbkss9ta03**** |
| ResourceGroupIdsScope |
string |
No |
The compliance pack is effective only for resources in the specified resource groups. Separate multiple resource group IDs with commas (,). |
rg-aekzc7r7rhx**** |
| ExcludeResourceGroupIdsScope |
string |
No |
The rules are not effective for resources in the specified resource groups. Resources in these resource groups are not evaluated. Separate multiple resource group IDs with commas (,). |
rg-bnczc6r7rml**** |
| TagKeyScope |
string |
No |
The compliance pack is effective only for resources that have the specified tag key. |
ECS |
| TagValueScope |
string |
No |
The compliance pack is effective only for resources that have the specified tag key and tag value. Note
You must specify TagValueScope together with TagKeyScope. |
test |
| TagsScope |
array<object> |
No |
The tag scope. |
|
|
object |
No |
|||
| TagKey |
string |
No |
The tag key. |
key-1 |
| TagValue |
string |
No |
The tag value. |
value-1 |
| ExcludeTagsScope |
array<object> |
No |
The excluded tag scope. |
|
|
object |
No |
The excluded tag scope. |
||
| TagKey |
string |
No |
The tag key. |
key-2 |
| TagValue |
string |
No |
The tag value. |
value-2 |
Tag
deprecated
|
array<object> |
No |
The tags of the resource. This parameter is deprecated and no longer takes effect. You can add up to 20 tags. |
|
|
object |
No |
The tags of the resource. You can add up to 20 tags. |
||
| Key |
string |
No |
The tag key of the resource. You can add up to 20 tag keys. |
key-1 |
| Value |
string |
No |
The tag value of the resource. You can add up to 20 tag values. |
value-1 |
For more information about common request parameters, see Common parameters.
Response elements
|
Element |
Type |
Description |
Example |
|
object |
None |
||
| CompliancePackId |
string |
The ID of the compliance pack. |
ca-f632626622af0079**** |
| RequestId |
string |
The request ID. |
6EC7AED1-172F-42AE-9C12-295BC2ADB751 |
Examples
Success response
JSON format
{
"CompliancePackId": "ca-f632626622af0079****",
"RequestId": "6EC7AED1-172F-42AE-9C12-295BC2ADB751"
}
Error codes
|
HTTP status code |
Error code |
Error message |
Description |
|---|---|---|---|
| 400 | Invalid.AggregatorId.Value | The specified AggregatorId is invalid. | The specified aggregator ID does not exist or you are not authorized to use the aggregator. |
| 400 | Invalid.CompliancePackId.Value | The specified CompliancePackId does not exist. | The specified compliance pack ID does not exist. |
| 400 | CompliancePackExceedMaxCount | The maximum number of compliance pack is exceeded. | |
| 400 | Invalid.ConfigRules.Empty | You must specify ConfigRules. | |
| 400 | Invalid.ConfigRules.Value | The specified ConfigRules is invalid. | The specified ConfigRules is invalid. |
| 400 | ConfigRuleExceedMaxRuleCount | The maximum number of config rules is exceeded. | |
| 400 | CompliancePackAlreadyPending | The compliance pack has a pending operation and cannot be updated. | The compliance pack has a pending operation and cannot be updated. |
| 400 | CompliancePackExists | The compliance pack already exists. | The compliance pack name already exists. |
| 403 | AggregatorMemberNoPermission | The aggregator member is not authorized to perform the operation. | The aggregator member is not authorized to perform the operation. |
| 404 | AccountNotExisted | Your account does not exist. | |
| 503 | ServiceUnavailable | The request has failed due to a temporary failure of the server. | The request has failed due to a temporary failure of the server. |
See Error Codes for a complete list.
Release notes
See Release Notes for a complete list.