UserPoolAddOnsType - Amazon Cognito User Pools

UserPoolAddOnsType

Contains settings for activation of threat protection, including the operating mode and additional authentication types. To log user security information but take no action, set to AUDIT. To configure automatic security responses to potentially unwanted traffic to your user pool, set to ENFORCED.

For more information, see Adding advanced security to a user pool. To activate this setting, your user pool must be on the Plus tier.

This data type is a request and response parameter of CreateUserPool and UpdateUserPool, and a response parameter of DescribeUserPool.

Contents

AdvancedSecurityMode

The operating mode of threat protection for standard authentication types in your user pool, including username-password and secure remote password (SRP) authentication.

Type: String

Valid Values: OFF | AUDIT | ENFORCED

Required: Yes

AdvancedSecurityAdditionalFlows

Threat protection configuration options for additional authentication types in your user pool, including custom authentication.

Type: AdvancedSecurityAdditionalFlowsType object

Required: No

See Also

For more information about using this API in one of the language-specific AWS SDKs, see the following: