Manage Compliance Policy Exceptions in the Lacework Console
View Exceptions for a Policy
Log in to the Lacework Console and go to Policies.
Click a specific compliance policy and click the Exceptions tab. A list of all exceptions for this policy appears.
Examine the exception parameters, such as: Account Ids, Bucket Name, Resource Tags, and optionally Comments, for the exception.
View Exceptions in the Cloud Compliance Dashboard
Exceptions can also be viewed on the Cloud Compliance Dashboard when grouped by Policy.
See View and Add Exceptions on a Policy for guidance.
Edit an Exception for a Policy
note
Once an exception is edited, the edit will not take effect until the next compliance assessment run is complete.
Log in to the Lacework Console and go to Policies.
Click a specific compliance policy and click the Exceptions tab. A list of exceptions appears for this policy.
Click the Edit icon next to an existing exception configured for the policy to modify.
Modify any of the parameters and values for this exception.
Click Add Exception / Save to save the changes to this exception.
Delete an Exception from a Policy
Log in to the Lacework Console and go to Policies.
Click a specific compliance policy and click the Exceptions tab. A list of exceptions appears for this policy.
Click the Delete icon next to the specific exception.
Click Yes when prompted to delete the exception.
Other Actions
Search for Exceptions on a Policy
Log in to the Lacework Console and go to Policies.
Click a specific compliance policy and click the Exceptions tab. A list of exceptions appears for this policy.
Click the Search icon next to the specific exception.
Enter a search string. Search results containing this search string appear.
Refresh the List of Exceptions on a Policy
Additionally, you can refresh the list of exceptions under a specific policy in the Exceptions tab.
Log in to the Lacework Console and go to Policies.
Click a specific compliance policy and click the Exceptions tab. A list of exceptions appears for this policy.
Click the Refresh icon next to Add Exceptions.
Download the List of Exceptions on a Policy
You can download the list of exceptions configured for a policy as a CSV file.
Log in to the Lacework Console and go to Policies.
Click a specific compliance policy and click the Exceptions tab. A list of exceptions appears for this policy.
Click the Download icon next to Add Exceptions.
If there are more than ten exceptions under a compliance policy, use the Next Page icon to view more exceptions.