Predefined Policy List
You can use predefined policies to create rules on the Config console.
The following table lists predefined policies provided by Config.
Service |
Policy |
Triggered By |
Object |
---|---|---|---|
General policies |
Configuration change |
All resources |
|
Configuration change |
|||
Configuration change |
|||
Configuration change |
|||
Configuration change |
|||
Configuration change |
|||
Configuration change |
All resources |
||
Configuration change |
All resources |
||
Configuration change |
All resources |
||
Configuration change |
All resources |
||
API Gateway (APIG) |
Configuration change |
apig.instances |
|
Configuration change |
apig.instances |
||
Configuration change |
apig.instances |
||
CodeArts Deploy |
Configuration change |
codeartsdeploy.host-cluster |
|
Configuration change |
codeartsbuild.CloudBuildServer |
||
MapReduce Service (MRS) |
Configuration change |
mrs.mrs |
|
Configuration change |
mrs.mrs |
||
Configuration change |
mrs.mrs |
||
Configuration change |
mrs.mrs |
||
Configuration change |
mrs.mrs |
||
Configuration change |
mrs.mrs |
||
NAT Gateway |
Configuration change |
nat.privateNatGateways |
|
VPC Endpoint (VPCEP) |
Periodic |
Account |
|
Web Application Firewall (WAF) |
Configuration change |
waf.instance |
|
Configuration change |
waf.policy |
||
Periodic |
Account |
||
Periodic |
Account |
||
Configuration change |
waf.instance |
||
ELB |
Configuration change |
elb.loadbalancers |
|
Configuration change |
elb.loadbalancers |
||
Configuration change |
elb.loadbalancers |
||
Configuration change |
elb.members |
||
Configuration change |
elb.listeners |
||
Configuration change |
elb.loadbalancers |
||
Elastic IP (EIP) |
Configuration change |
vpc.publicips |
|
Configuration change |
vpc.publicips |
||
Periodic |
vpc.publicips |
||
Auto Scaling (AS) |
Configuration change |
as.scalingGroups |
|
AS Groups Are Associated with an Elastic Load Balancer that Uses Health Check |
Configuration change |
as.scalingGroups |
|
Configuration change |
as.scalingGroups |
||
Configuration change |
as.scalingGroups |
||
Configuration change |
as.scalingGroups |
||
Scalable File Service Turbo (SFS Turbo) |
Configuration change |
sfsturbo.shares |
|
Configuration change |
sfsturbo.shares |
||
Periodic |
sfsturbo.shares |
||
Elastic Cloud Server (ECS) |
Configuration change |
ecs.cloudservers |
|
Configuration change |
ecs.cloudservers |
||
Configuration change |
ecs.cloudservers |
||
Configuration change |
ecs.cloudservers |
||
Configuration change |
ecs.cloudservers |
||
Configuration change |
ecs.cloudservers |
||
Configuration change |
ecs.cloudservers |
||
Configuration change |
ecs.cloudservers |
||
Periodic |
ecs.cloudservers |
||
Configuration change |
ecs.cloudservers |
||
Configuration change |
ecs.cloudservers |
||
Configuration change |
ecs.cloudservers |
||
Periodic |
ecs.cloudservers |
||
Configuration change |
ecs.cloudservers |
||
Distributed Cache Service (DCS) |
Configuration change |
dcs.memcached |
|
Configuration change |
dcs.memcached |
||
Configuration change |
dcs.memcached |
||
Configuration change |
dcs.memcached |
||
Configuration change |
dcs.redis |
||
Configuration change |
dcs.redis |
||
Configuration change |
dcs.redis |
||
Configuration change |
dcs.redis |
||
Configuration change |
dcs.redis |
||
FunctionGraph |
Configuration change |
fgs.functions |
|
Configuration change |
fgs.functions |
||
Configuration change |
fgs.functions |
||
Configuration change |
fgs.functions |
||
Configuration change |
fgs.functions |
||
Content Delivery Network (CDN) |
Configuration change |
cdn.domains |
|
Configuration change |
cdn.domains |
||
Configuration change |
cdn.domains |
||
Configuration change |
cdn.domains |
||
Config |
Periodic |
Account |
|
Data Warehouse Service (DWS) |
Configuration change |
dws.clusters |
|
Configuration change |
dws.clusters |
||
Configuration change |
dws.clusters |
||
Configuration change |
dws.clusters |
||
Configuration change |
dws.clusters |
||
Configuration change |
dws.clusters |
||
Configuration change |
dws.clusters |
||
Data Replication Service (DRS) |
Configuration change |
drs.dataGuardJob |
|
Configuration change |
drs.migrationJob |
||
Configuration change |
drs.synchronizationJob |
||
Data Encryption Workshop (DEW) |
Configuration change |
kms.keys |
|
Configuration change |
kms.keys |
||
Configuration change |
csms.secrets |
||
Configuration change |
csms.secrets |
||
Configuration change |
csms.secrets |
||
Periodic |
csms.secrets |
||
Identity and Access Management (IAM) |
Periodic |
iam.users |
|
Configuration changes |
iam.roles&iam.policies |
||
Configuration change |
iam.groups |
||
Configuration change |
iam.users |
||
Configuration change |
iam.users, iam.groups, iam.agencies |
||
Configuration change |
iam.roles, iam.policies |
||
Configuration change |
iam.roles, iam.policies |
||
Periodic |
Account |
||
Configuration change |
iam.users |
||
Configuration change |
iam.users |
||
Configuration change |
iam.users |
||
Periodic |
iam.users |
||
Configuration change |
iam.users |
||
Configuration change |
iam.users |
||
Configuration change |
iam.users |
||
Periodic |
Account |
||
Configuration change |
iam.policies |
||
Configuration change |
iam.roles |
||
Periodic |
iam.users |
||
Configuration change |
iam.agencies |
||
Configuration change |
iam.users |
||
IAM Users Do Not Have Directly Assigned Policies or Permissions |
Configuration change |
iam.users |
|
Document Database Service (DDS) |
Configuration change |
dds.instances |
|
Configuration change |
dds.instances |
||
Configuration change |
dds.instances |
||
Configuration change |
dds.instances |
||
Configuration change |
dds.instances |
||
Configuration change |
dds.instances |
||
Simple Message Notification (SMN) |
Configuration change |
smn.topic |
|
Virtual Private Cloud (VPC) |
Configuration change |
vpc.firewallGroups |
|
Configuration change |
vpc.securityGroups |
||
Configuration change |
vpc.vpcs |
||
Configuration change |
vpc.securityGroups |
||
Configuration change |
vpc.securityGroups |
||
Configuration change |
vpc.securityGroups |
||
Configuration change |
vpc.securityGroups |
||
Configuration change |
vpc.securityGroups |
||
Virtual Private Network (VPN) |
Configuration change |
vpnaas.vpnConnections, vpnaas.ipsec-site-connections |
|
Cloud Eye |
Configuration change |
ces.alarms |
|
Alarm Rules Have Been Configured for Key Disablement and Deletion |
Periodic |
Account |
|
There Are Alarm Rules Configured for OBS Bucket Policy Changes |
Periodic |
Account |
|
Periodic |
Account |
||
Configuration change |
ces.alarms |
||
Periodic |
Account |
||
Cloud Container Engine (CCE) |
Configuration change |
cce.clusters |
|
Configuration change |
cce.clusters |
||
Configuration change |
cce.clusters |
||
Configuration change |
cce.clusters |
||
Configuration change |
cce.clusters |
||
Cloud Trace Service (CTS) |
Configuration change |
cts.trackers |
|
Configuration change |
cts.trackers |
||
Periodic |
Account |
||
Configuration change |
cts.trackers |
||
Periodic |
Account |
||
Periodic |
Account |
||
Periodic |
Account |
||
Relational Database Service (RDS) |
Configuration change |
rds.instances |
|
Configuration change |
rds.instances |
||
Configuration change |
rds.instances |
||
Configuration change |
rds.instances |
||
Configuration change |
rds.instances |
||
Configuration change |
rds.instances |
||
Configuration change |
rds.instances |
||
Both Error Logs and Slow Query Logs Are Collected for RDS Instances |
Configuration change |
rds.instances |
|
Configuration change |
rds.instances |
||
Configuration change |
rds.instances |
||
Configuration change |
rds.instances |
||
Configuration change |
rds.instances |
||
Configuration change |
rds.instances |
||
GaussDB |
Configuration change |
gaussdb.instance |
|
Configuration change |
gaussdb.instance |
||
Configuration change |
gaussdb.instance |
||
Configuration change |
gaussdb.instance |
||
Configuration change |
gaussdb.instance |
||
Configuration change |
gaussdb.instance |
||
Configuration change |
gaussdb.instance |
||
Configuration change |
gaussdb.instance |
||
GaussDB (for MySQL) |
Configuration change |
gaussdbformysql.instance |
|
Configuration change |
gaussdbformysql.instance |
||
Configuration change |
gaussdbformysql.instance |
||
Configuration change |
gaussdbformysql.instance |
||
Configuration change |
gaussdbformysql.instance |
||
Configuration change |
gaussdbformysql.instance |
||
Configuration change |
gaussdbformysql.instance |
||
Configuration change |
gaussdbformysql.instance |
||
GeminiDB |
Configuration change |
nosql.instances |
|
Configuration change |
nosql.instances |
||
Configuration change |
nosql.instances |
||
Configuration change |
nosql.instances |
||
Configuration change |
nosql.instances |
||
Cloud Search Service (CSS) |
Configuration change |
css.clusters |
|
Configuration change |
css.clusters |
||
Configuration change |
css.clusters |
||
Configuration change |
css.clusters |
||
Configuration change |
css.clusters |
||
Configuration change |
css.clusters |
||
Configuration change |
css.clusters |
||
Configuration change |
css.clusters |
||
Configuration change |
css.clusters |
||
Configuration change |
css.clusters |
||
Configuration change |
css.clusters |
||
Configuration change |
css.clusters |
||
Elastic Volume Service (EVS) |
Configuration changes |
evs.volumes |
|
Periodic |
evs.volumes |
||
Configuration changes |
evs.volumes |
||
Configuration change |
evs.volumes |
||
Configuration change |
evs.volumes |
||
Configuration change |
evs.volumes |
||
Periodic |
evs.volumes |
||
Cloud Certificate Manager (CCM) |
Periodic |
pca.ca |
|
Periodic |
pca.cert |
||
Periodic |
pca.ca |
||
Configuration change |
pca.ca, pca.cert |
||
Distributed Message Service (for Kafka) |
Configuration change |
dms.kafkas |
|
Configuration change |
dms.kafkas |
||
Configuration change |
dms.kafkas |
||
Distributed Message Service for RabbitMQ (for RabbitMQ) |
Configuration change |
dms.rabbitmqs |
|
Configuration change |
dms.rabbitmqs |
||
Distributed Message Service for RocketMQ (for RocketMQ) |
Configuration change |
dms.reliabilitys |
|
Configuration change |
dms.reliabilitys |
||
Organizations |
Periodic |
Account |
|
Cloud Firewall (CFW) |
Configuration change |
cfw.cfw_instance |
|
Cloud Backup and Recovery (CBR) |
Configuration change |
cbr.backup |
|
Configuration change |
cbr.policy |
||
Configuration change |
cbr.vault |
||
Object Storage Service (OBS) |
Configuration change |
obs.buckets |
|
OBS Bucket Policies Only Allow Access from the Specified Objects |
Configuration change |
obs.buckets |
|
Configuration change |
obs.buckets |
||
Configuration change |
obs.buckets |
||
Configuration change |
obs.buckets |
||
Configuration change |
obs.buckets |
||
Image Management Service (IMS) |
Configuration change |
ims.images |
|
Bare Metal Server (BMS) |
Configuration change |
bms.servers |
Feedback
Was this page helpful?
Provide feedbackThank you very much for your feedback. We will continue working to improve the documentation.See the reply and handling status in My Cloud VOC.
For any further questions, feel free to contact us through the chatbot.
Chatbot