aws-security-reference-architecture-examples icon indicating copy to clipboard operation
aws-security-reference-architecture-examples copied to clipboard

[BUG] Easy Setup Fails When Deploying AWS GuardDuty

Open BlakePierantoni opened this issue 2 years ago • 2 comments

Describe the bug

The easy setup stackset fails to deploy during initial provisioning in a net new AWS Organization.

Stacks Failing: rGuardDutyOrgLambdaCustom

  • Reason: "An error occured (BadRequestException) when calling the EnableOrganizationAdmin Account Operation: The request is rejected because an invalid or out of range value is specified as an input parameter"

rGuardDutyOrgLambdaCustomResource

  • Reason: "An error occured (BadRequestException) when calling the EnableOrganizationAdmin Account Operation: The request is rejected because an invalid or out of range value is specified as an input parameter"

To Reproduce

Steps to reproduce the behavior:

  1. Deploy SRA Easy setup with the following selections
    • EC2 Default Volume Encryption
    • GuardDuty
      • Malware Protection
    • IAM Access Analyzer
    • IAM Account Password Policy
    • S3 Block Account Public Access

Additional context

I double checked all parameters and didn't see an issue with any being passed through. The easy setup is pointing at the main branch

BlakePierantoni avatar Oct 12 '23 11:10 BlakePierantoni

Hi @BlakePierantoni we are trying to recreate this issue. When you checked the parameters, can you please confirm that you set: - pControlTower (set to 'false') - pGovernedRegions (set to be a comma separated list of regions) - pSecurityAccountId (set to be your security tooling account ID) - pLogArchiveAccountId (set to be your log archive account ID)

Can you also tell us what regions you are deploying the SRA too?

cyphronix avatar Oct 12 '23 14:10 cyphronix

@liamschn , it seems this issue was resolved.

BlakePierantoni avatar Nov 22 '23 15:11 BlakePierantoni

Closing. Please reach out if you need further assistance.

cyphronix avatar Jul 22 '24 21:07 cyphronix