No project description provided
Project description
AWS Incident Detection and Response (IDR) CLI
Overview
The AWS Incident Detection and Response Customer CLI (referred to as the "IDR CLI" or "CLI" in this package) is a command-line-interface tool that streamlines how you onboard to AWS Incident Detection and Response ("IDR"). You can read more about IDR onboarding in the User Guide: https://docs.aws.amazon.com/IDR/latest/userguide/getting-started-idr.html
The CLI runs in AWS CloudShell or local terminal to collect onboarding information, gather AWS resource data via the Resource Groups Tagging API, and manage Support cases. It creates new CloudWatch alarms or ingests existing ones, and deploys infrastructure via CloudFormation to enable third-party tools to send alerts to AWS for IDR ingestion.
If you’re familiar with the CLI but have questions, jump to the FAQs . This section describes what you can accomplish with the CLI. You can use the CLI both in an interactive mode in which the CLI guides you through the steps, or you can use the CLI in “unattended mode” to automate your work.
Quick Start
Prerequisites: AWS credentials configured (not needed in CloudShell) and required IAM permissions - see Getting Started and IAM Policies
# Install IDR CLI
pip install awsidr
# 1. Workload Metadata Collection (Execute this first)
awsidr register-workload
# 2. CloudWatch Alarm Creation (Execute this if your workload information is already collected)
awsidr create-alarms
# 3. Alarm Ingestion (Onboard existing CloudWatch alarms and apm alarms)
awsidr ingest-alarms
# 4. 3rd party APM Integration setup (Set up integration between 3rd party APM providers and AWS account)
awsidr setup-apm
# Available flags
-v, --verbose Enable verbose output
--debug Enable debug mode
--help Show help message and exit.
-r, --resume Resume with a specific session number
--config Use config file (unattended mode)
Choosing Which Command to Execute
| Task | Guide |
|---|---|
| First time setup | Workflow 1 |
| Ingest existing alarms | Workflow 2 |
| APM integration | Workflow 3 |
| Automate with config files | Unattended Mode |
| Troubleshooting | FAQ |
Detailed Command Execution Guides
These guides contain the step-by-step walkthrough for each command. You can reference them for explanation of each step during command execution:
awsidr register-workload→ Workload Registration Guide - Collect workload metadata, discover resources using tags, select AWS resources for monitoring, and create support casesawsidr create-alarms→ CloudWatch Alarms Guide - Create new CloudWatch alarms with CLI-generated recommendations based on your selected AWS resourcesawsidr ingest-alarms→ Alarm Ingestion Guide - Onboard existing CloudWatch alarms or APM alerts using tags, ARNs, or file uploads; includes validation and support case managementawsidr setup-apm→ APM Integration Guide - Deploy infrastructure for third-party APM tools (Datadog, New Relic, etc.)
Examples Input for Unattended Mode
If you chooses to execute in Unattended Mode, a configuration file input is needed, you can reference the following examples for configuration file format
AWS IDR Resources
- AWS Incident Detection and Response
- AWS IDR User Guide
- Getting Started with IDR
- Onboard Your Workload
- Define and Configure Alarms
- Ingest Alarms
- Ingest Alarms from APMs with EventBridge Integration
- Ingest Alarms Using Webhooks
- Monitoring and Observability
Questions, Special Requests, and Feedback
Upon the completion of awsidr register-workload, awsidr create-alarms, or awsidr ingest-alarms , a support case will be created by the CLI on your behalf. If you have any questions about IDR, special requests (such as applicable compliance and regulatory requirements), and feedback for the IDR CLI, please feel free to reply to the support case created. The support case can be found in AWS Support → Your support case, and will have the subject line:
AWS Incident Detection and Response - {workload_name}
Contributing
Contributions are welcome! However, changes must go through our internal repository before being merged on GitHub, so external pull requests will not be merged directly.
For security related issues, please reference SECURITY. For non-security related requests, please open issues to report bugs or suggest features. When filing an issue, check existing open or recently closed issues to ensure it hasn't already been reported. Include as much information as possible, such as:
- A reproducible test case or series of steps
- The version of our code being used
- Any modifications you've made relevant to the bug
- Anything unusual about your environment or deployment
Security
See SECURITY for more information.
License
This library is licensed under the Apache-2.0 License. See the LICENSE.md file.
Project details
Download files
Download the file for your platform. If you're not sure which to choose, learn more about installing packages.
Source Distribution
Built Distribution
Filter files by name, interpreter, ABI, and platform.
If you're not sure about the file name format, learn more about wheel file names.
Copy a direct link to the current filters
File details
Details for the file awsidr-1.0.1.tar.gz.
File metadata
- Download URL: awsidr-1.0.1.tar.gz
- Upload date:
- Size: 199.9 kB
- Tags: Source
- Uploaded using Trusted Publishing? Yes
- Uploaded via: twine/6.1.0 CPython/3.13.7
File hashes
| Algorithm | Hash digest | |
|---|---|---|
| SHA256 |
d08e8bf509dd2f6d0a0c593115b9f382a9e031c6137ffec20a0ecf744423535f
|
|
| MD5 |
26d96ede31b28c9a362e6c1db0c18511
|
|
| BLAKE2b-256 |
56b388979de879cb633d506d1978216cbed3eadf4818d270a8b2ef503bb9de24
|
Provenance
The following attestation bundles were made for awsidr-1.0.1.tar.gz:
Publisher:
pypi_upload.yml on awslabs/CLI-for-AWS-Incident-Detection-and-Response
-
Statement:
-
Statement type:
https://in-toto.io/Statement/v1 -
Predicate type:
https://docs.pypi.org/attestations/publish/v1 -
Subject name:
awsidr-1.0.1.tar.gz -
Subject digest:
d08e8bf509dd2f6d0a0c593115b9f382a9e031c6137ffec20a0ecf744423535f - Sigstore transparency entry: 766126313
- Sigstore integration time:
-
Permalink:
awslabs/CLI-for-AWS-Incident-Detection-and-Response@1d5e0955297dc4e3d704363576cdd7a807620b53 -
Branch / Tag:
refs/heads/main - Owner: https://github.com/awslabs
-
Access:
public
-
Token Issuer:
https://token.actions.githubusercontent.com -
Runner Environment:
github-hosted -
Publication workflow:
pypi_upload.yml@1d5e0955297dc4e3d704363576cdd7a807620b53 -
Trigger Event:
workflow_run
-
Statement type:
File details
Details for the file awsidr-1.0.1-py3-none-any.whl.
File metadata
- Download URL: awsidr-1.0.1-py3-none-any.whl
- Upload date:
- Size: 247.9 kB
- Tags: Python 3
- Uploaded using Trusted Publishing? Yes
- Uploaded via: twine/6.1.0 CPython/3.13.7
File hashes
| Algorithm | Hash digest | |
|---|---|---|
| SHA256 |
f39ff806c62795a7c83be6d776d11f1b6f283ac8312e98b2d64ed9c64bae5ec8
|
|
| MD5 |
fe29455c8454ebc6c64bbd8c74921b6d
|
|
| BLAKE2b-256 |
688c37e73ab0a7b08b6c1c74f6713ce7357735aacd4f9587f73a774e0e9481ef
|
Provenance
The following attestation bundles were made for awsidr-1.0.1-py3-none-any.whl:
Publisher:
pypi_upload.yml on awslabs/CLI-for-AWS-Incident-Detection-and-Response
-
Statement:
-
Statement type:
https://in-toto.io/Statement/v1 -
Predicate type:
https://docs.pypi.org/attestations/publish/v1 -
Subject name:
awsidr-1.0.1-py3-none-any.whl -
Subject digest:
f39ff806c62795a7c83be6d776d11f1b6f283ac8312e98b2d64ed9c64bae5ec8 - Sigstore transparency entry: 766126323
- Sigstore integration time:
-
Permalink:
awslabs/CLI-for-AWS-Incident-Detection-and-Response@1d5e0955297dc4e3d704363576cdd7a807620b53 -
Branch / Tag:
refs/heads/main - Owner: https://github.com/awslabs
-
Access:
public
-
Token Issuer:
https://token.actions.githubusercontent.com -
Runner Environment:
github-hosted -
Publication workflow:
pypi_upload.yml@1d5e0955297dc4e3d704363576cdd7a807620b53 -
Trigger Event:
workflow_run
-
Statement type: