CloudTrail: CloudWatch Logs - 'log group is configured'

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

CloudTrail records API calls for your account and delivers log files. You should capture CloudTrail logs within a specified S3 bucket for long term analysis.

Solution

Verify the Log Group configuration.

See Also

https://d1.awsstatic.com/whitepapers/Security/AWS_Security_Best_Practices.pdf

Item Details

Category: AUDIT AND ACCOUNTABILITY

References: 800-53|AU-12, CCE|CCE-78916-4, CSCv6|6, CSCv6|6.2, CSCv6|14.6, CSCv6|16.8

Plugin: amazon_aws

Control ID: 29fc333cc01902ac3eaafbdbad540a6c62e8d1b5f59dbb6bb61928a733cd8d64