aws-vpc-vpn-customer-gateway-configuration

The generated customer-gateway XML can contain IPsec tunnel pre-shared keys and device configuration.

awscritical service: aws:vpc emits ExposesCredential

Where it sits

locationDescribeVpnConnections.VpnConnections[].CustomerGatewayConfiguration
location kindconfig_field
data kindspassword signing_secret credential sensitive_data
emits edgeExposesCredential
serviceVPC (aws:vpc)

Collection recipe

access moderead_api
operationDescribeVpnConnections
response pathVpnConnections[].CustomerGatewayConfiguration
encodingxml
params{"VpnConnectionIds": ["\u003cvpn-connection-id\u003e"]}

Required permissions

ec2:DescribeVpnConnections

References

move · open · esc close