CloudTrail auditor
Project description
Description
This auditor ensures that CloudTrail:
is enabled globally on multi-region
logs to a central location
has SNS/SQS notifications enabled and being sent to the correct queues
and that regional trails (of our chosen name) are not enabled
Configuration Options
Option name |
Default Value |
Type |
Description |
---|---|---|---|
enabled |
False |
bool |
Enable the CloudTrail auditor |
interval |
60 |
int |
Run frequency in minutes |
bucket_account |
CHANGE ME |
string |
Name of the account (must exist), in which to create the S3 bucket where CloudTrail logs will be delivered |
bucket_name |
CHANGE ME |
string |
Name of the S3 bucket to send CloudTrail logs to |
bucket_region |
us-west-2 |
string |
Region where to enable global events logging |
global_cloudtrail_region |
us-west-2 |
string |
Region where to enable the global CloudTrail |
sns_topic_name |
CHANGE ME |
string |
Name of the SNS topic for CloudTrail log delivery |
sqs_queue_account |
CHANGE ME |
string |
Name of the account (must exist) which owns the SQS queue for CloudTrail log delivery notifications |
sqs_queue_name |
SET ME |
string |
Name of the SQS queue |
sqs_queue_region |
us-west-2 |
string |
Region for the SQS queue |
trail_name |
us-west-2 |
string |
Name of the CloudTrail trail region |
Project details
Release history Release notifications | RSS feed
Download files
Download the file for your platform. If you're not sure which to choose, learn more about installing packages.
Source Distribution
Hashes for cinq-auditor-cloudtrail-1.1.4.tar.gz
Algorithm | Hash digest | |
---|---|---|
SHA256 | c9841c63df918ca39f4bc80e9e2afeb295635c29481244e12033744e59bcdf95 |
|
MD5 | 070b7273178395dfdf8258c5a98a4585 |
|
BLAKE2b-256 | 43dc349ca6364e958ba90b4de81eaa9cafd323a85203972197e45435f36079c5 |