AWS Query

AWS Query

Certified

Query CloudWatch metrics

Fetches metric statistics over a rolling window using GetMetricStatistics. Uses current time as end, start = end - window. Results are sorted by timestamp.

yaml
type: io.kestra.plugin.aws.cloudwatch.Query

Query CPU utilization over the last 5 minutes

yaml
id: aws_cloudwatch_query
namespace: company.team
tasks:
  - id: query
    type: io.kestra.plugin.aws.cloudwatch.Query
    accessKeyId: "{{ secret('AWS_ACCESS_KEY_ID') }}"
    secretKeyId: "{{ secret('AWS_SECRET_KEY_ID') }}"
    region: "us-east-1"
    namespace: "AWS/EC2"
    metricName: "CPUUtilization"
    statistic: "Average"
    periodSeconds: 60
    window: PT5M
    dimensions:
      - name: "InstanceId"
        value: "i-0abcd1234ef567890"
Properties

Metric name

Name of the metric to retrieve.

Access Key Id in order to connect to AWS

If no credentials are defined, we will use the default credentials provider chain to fetch credentials.

Enable compatibility mode

Use it to connect to S3 bucket with S3 compatible services that don't support the new transport client.

Dimensions

Optional dimension filters applied to the metric.

Definitions
namestring

Dimension name

valuestring

Dimension value

The endpoint with which the SDK should communicate

This property allows you to use a different S3 compatible storage backend.

Force path style access

Must only be used when compatibilityMode is enabled.

Namespace

Metric namespace; required for most metrics.

Default60

Period seconds

Granularity for aggregation; default 60 seconds.

Reference (ref) of the pluginDefaults to apply to this task.

AWS region with which the SDK should communicate

Secret Key Id in order to connect to AWS

If no credentials are defined, we will use the default credentials provider chain to fetch credentials.

AWS session token, retrieved from an AWS token service, used for authenticating that this user has received temporary permissions to access a given resource

If no credentials are defined, we will use the default credentials provider chain to fetch credentials.

DefaultAverage

Statistic

Statistic to return (Average, Sum, Maximum, Minimum, SampleCount); default Average.

The AWS STS endpoint with which the SDKClient should communicate

AWS STS Role

The Amazon Resource Name (ARN) of the role to assume. If set the task will use the StsAssumeRoleCredentialsProvider. If no credentials are defined, we will use the default credentials provider chain to fetch credentials.

AWS STS External Id

A unique identifier that might be required when you assume a role in another account. This property is only used when an stsRoleArn is defined.

DefaultPT15M

AWS STS Session duration

The duration of the role session (default: 15 minutes, i.e., PT15M). This property is only used when an stsRoleArn is defined.

AWS STS Session name

This property is only used when an stsRoleArn is defined.

DefaultPT5M

Window

Lookback duration from now, e.g., PT5M; default 5 minutes.

Datapoint count

Number of datapoints returned after sorting.

SubTypeobject

Series

List of datapoints as maps, sorted by timestamp.