Difference between revisions of "AWS CloudTrail"
Jump to navigation
Jump to search
↑ https://aws.amazon.com/es/about-aws/whats-new/2013/11/13/announcing-aws-cloudtrail/
↑ https://aws.amazon.com/cloudtrail/faqs/#Event_payload.2C_timeliness.2C_and_delivery_frequency
↑ https://aws.amazon.com/blogs/aws/announcing-cloudtrail-insights-identify-and-respond-to-unusual-api-activity/
Line 18: | Line 18: | ||
* [[AWS CloudTrail Insights]] (Noviembre 2019)<ref>https://aws.amazon.com/blogs/aws/announcing-cloudtrail-insights-identify-and-respond-to-unusual-api-activity/</ref> | * [[AWS CloudTrail Insights]] (Noviembre 2019)<ref>https://aws.amazon.com/blogs/aws/announcing-cloudtrail-insights-identify-and-respond-to-unusual-api-activity/</ref> | ||
* [[AWS Config]] (2015) | * [[AWS Config]] (2015) | ||
− | * [[Amazon GuardDuty]] (2017) | + | * [[Amazon GuardDuty]] (Nov 2017) analyzes AWS CloudTrail logs |
* [[Elastic SIEM]] | * [[Elastic SIEM]] | ||
* [[IAM Access Analyzer]] | * [[IAM Access Analyzer]] |
Revision as of 14:17, 22 November 2021
wikipedia:AWS CloudTrail [1] (Nov 2013) is a web service that records API calls made on your account and delivers log files to your AWS S3 bucket every 5 minutes[2]. Third party products such as CloudCheckr and Splunk can help you to analyze logs. Basic functionality of AWS CloudTrail is enabled on all AWS accounts by default and records up to 90 days of your account activity upon account creation.
- Homepage: https://aws.amazon.com/cloudtrail/
Pricing
- Management events: Always free
- Data events: 0.10 per 100,000 data events delivered
Change log
Activities
- Read https://docs.aws.amazon.com/awscloudtrail/latest/userguide/cloudtrail-receive-logs-from-multiple-accounts.html
- Read best practices: https://aws.amazon.com/blogs/mt/aws-cloudtrail-best-practices/
- Read blog: https://aws.amazon.com/blogs/mt/category/management-tools/aws-cloudtrail/
Related terms
- AWS CloudTrail Insights (Noviembre 2019)[3]
- AWS Config (2015)
- Amazon GuardDuty (Nov 2017) analyzes AWS CloudTrail logs
- Elastic SIEM
- IAM Access Analyzer
- AWS CloudFormation
- Governance, Compliance
- FedRAMP and PCI-DSS
acct
See also
aws cloudtrail
[get-event-selectors | lookup-events | list-trails | create-trail | add-tags | delete-trail | describe-trails | get-trail-status | put-event-selectors | put-insight-selectors | remove-tags | start-logging | stop-logging | update-trail | validate-logs | create-event-data-store | list-public-keys | list-tags
], Terraform,enable-federation
,AWS CloudTrail, Events- AWS CloudTrail, AWS CloudTrail Insights, CloudTrail Events, AWS CloudTrail Lake, Terraform, Best practices, Datadog SIEM Content Packs for Cloudtrail
- AWS security, AWS Security Hub, AWS CloudTrail, Amazon GuardDuty, Amazon Detective, AWS WAF, AWS Audit Manager, Amazon Fraud Detector, Cloudsploit, AWS Certified Security - Specialty, AWS Security Assurance Services, AWS GDPR, Amazon Inspector, AWS Network Firewall, Zelkova
- AWS compliance: AWS CloudTrail, AWS Audit Manager, AWS Artifact
- AWS, AWS Management & Governance, AWS Organizations, AWS CloudTrail, AWS Control Tower, AWS Resource Access Manager (RAM), AWS Service Catalog, AWS Landing Zone, AWS SSO
Advertising: