Please open issues in the Cloud-Inquisitor repository
Description
This auditor ensures that CloudTrail:
is enabled globally on multi-region
logs to a central location
has SNS/SQS notifications enabled and being sent to the correct queues
and that regional trails (of our chosen name) are not enabled
Configuration Options
Option name |
Default Value |
Type |
Description |
|---|---|---|---|
enabled |
False |
bool |
Enable the CloudTrail auditor |
interval |
60 |
int |
Run frequency in minutes |
bucket_account |
CHANGE ME |
string |
Name of the account (must exist), in which to create the S3 bucket where CloudTrail logs will be delivered |
bucket_name |
CHANGE ME |
string |
Name of the S3 bucket to send CloudTrail logs to |
bucket_region |
us-west-2 |
string |
Region where to enable global events logging |
global_cloudtrail_region |
us-west-2 |
string |
Region where to enable the global CloudTrail |
sns_topic_name |
CHANGE ME |
string |
Name of the SNS topic for CloudTrail log delivery |
sqs_queue_account |
CHANGE ME |
string |
Name of the account (must exist) which owns the SQS queue for CloudTrail log delivery notifications |
sqs_queue_name |
SET ME |
string |
Name of the SQS queue |
sqs_queue_region |
us-west-2 |
string |
Region for the SQS queue |
trail_name |
us-west-2 |
string |
Name of the CloudTrail trail region |
Download files
Download the file for your platform. If you're not sure which to choose, learn more about installing packages.
Source Distribution
File details
Details for the file cinq-auditor-cloudtrail-2.1.0.tar.gz.
File metadata
- Download URL: cinq-auditor-cloudtrail-2.1.0.tar.gz
- Upload date:
- Size: 6.9 kB
- Tags: Source
- Uploaded using Trusted Publishing? No
- Uploaded via:
Python-urllib/3.6
File hashes
| Algorithm | Hash digest | |
|---|---|---|
| SHA256 |
16a0d0a984fcccdd760610ed096941e6735ba91dbb2fe97d92fbb797301fa66f
|
|
| MD5 |
e5d6071613d730c9cd5219e8d8ba3537
|
|
| BLAKE2b-256 |
1a02f9cd70bd8c921a77af52a7919c6c47789891541e596295396a592c43dd9b
|