February 2020
Intermediate to advanced
440 pages
13h 51m
English
For storing logs for more than 90 days, we need to create a trail and trails will send logs into an S3 bucket. In this recipe, we created a multi-region trail. We configured the options to log all events. We can also select from one of the following options: Read-only, Write-only, and None. We configured to log AWS KMS events. We did not enable log insights.
We did not enable S3 and Lambda data events. Enabling these will log resource operations (data events) that are performed on or within an S3 bucket or a Lambda function. These operations may also be called data plane operations. There is an additional ...
Read now
Unlock full access