When an account is enabled as the GuardDuty Organization Admin account, a Detector resource is auto-created and cannot be removed. This means the Little Orange GuardDuty stack cannot create the Detector so its properties are not managed by CloudFormation
It may be better to roll the Detector config management into the GuardDutyOrganizationConfiguration Custom Resource to ensure it gets managed
When an account is enabled as the GuardDuty Organization Admin account, a
Detector
resource is auto-created and cannot be removed. This means the Little Orange GuardDuty stack cannot create theDetector
so its properties are not managed by CloudFormationIt may be better to roll the
Detector
config management into theGuardDutyOrganizationConfiguration
Custom Resource to ensure it gets managed