AWS Secrets Manager helps you manage, retrieve, and rotate database credentials, API keys, and other secrets throughout their lifecycles.

You must configure cloud connections to monitor this entity. See Set up Cisco AppDynamics Cloud Collectors to Monitor AWS.

Cisco Cloud Observability displays AWS entities on the Observe page. Metrics are displayed for specific entity instances in the list and detail views.

This document contains references to third-party documentation. Splunk AppDynamics does not own any rights and assumes no responsibility for the accuracy or completeness of such third-party documentation.

Detail View

To display the detail view for an AWS Secrets Manager entity:

  1. Navigate to the Observe page. 
  2. Under Cloud Governance & Security Management, click AWS Secrets.
    The list view now displays.
  3. From the list, click an instance Name to display the detail view.
    The detail view displays the metrics, key performance indicators, and properties (attributes) related to the instance you selected.

Properties (Attributes)

Cisco Cloud Observability displays the following properties for AWS Secrets Manager.

Display NameProperty NameDescription
Arnaws.secret.arnThe ARN of the secret.
Nameaws.secret.nameThe name of the secret.
Created Ataws.secret.created_atThe Unix timestamp for the time when the secret was created.
Last Updated Ataws.secret.last_updated_atThe Unix timestamp for the last time when the secret was changed.
Last Accessed Ataws.secret.last_accessed_atThe Unix timestamp for the last time when the secret was accessed.
Next Rotation Ataws.secret.rotation.next_atThe Unix timestamp for the time when the secret will be rotated next.
Rotation Enabledaws.secret.rotation.enabledIndicates whether rotation is enabled for the secret.
Rotation After Daysaws.secret.rotation.days_afterThe number of days between rotations of the secret.
Rotation Durationaws.secret.rotation.durationThe length of the rotation window in hours.
Rotation Schedule Expressionaws.secret.rotation.schedule_expressionA cron() or rate() expression that defines the schedule for rotating your secret.


Retention and Purge Time-To-Live (TTL)

For all cloud and infrastructure entities, the retention TTL is 180 minutes (3 hours) and the purge TTL is 525,600 minutes (365 days). 

Amazon Web Services, the AWS logo, AWS, and any other AWS Marks used in these materials are trademarks of Amazon.com, Inc. or its affiliates in the United States and/or other countries.