Policy Packs
Enforce AWS GuardDuty Detectors Have Membership Only to Specific Accounts

Policy Setting: AWS > GuardDuty > Detector > Approved

Policies

This policy setting is dependent on the following policy types:

Source

resource "turbot_policy_setting" "aws_guardduty_detector_approved" {
resource = turbot_policy_pack.main.id
type = "tmod:@turbot/aws-guardduty#/policy/types/detectorApproved"
value = "Check: Approved"
# value = "Enforce: Delete unapproved if new"
}