Loading controls...
Benchmark: CloudTrail
Overview
This section contains recommendations for configuring CloudTrail resources and options.
Usage
Browse dashboards and select CloudTrail:
steampipe dashboard
Or run the benchmarks in your terminal:
steampipe check aws_compliance.benchmark.foundational_security_cloudtrail
Snapshot and share results via Steampipe Cloud:
steampipe loginsteampipe check --share aws_compliance.benchmark.foundational_security_cloudtrail
Controls
- 1 CloudTrail should be enabled and configured with at least one multi-Region trail
- 2 CloudTrail should have encryption at rest enabled
- 4 Ensure CloudTrail log file validation is enabled
- 5 Ensure CloudTrail trails are integrated with Amazon CloudWatch Logs