partnerThreatProtection
Configures the rule to match a third-party threat feed delivered through Amazon Web Services Marketplace. The calling account must hold an active subscription to the partner product named in Partner; if the subscription is missing or revoked, the rule is created with Status``CREATION_FAILED and cannot be modified — only deleted. See PartnerThreatProtectionConfig.