CloudTrail auditor
Project description
Description
This auditor ensures that CloudTrail:
is enabled globally on multi-region
logs to a central location
has SNS/SQS notifications enabled and being sent to the correct queues
and that regional trails (of our chosen name) are not enabled
Configuration Options
Option name |
Default Value |
Type |
Description |
---|---|---|---|
enabled |
False |
bool |
Enable the CloudTrail auditor |
interval |
60 |
int |
Run frequency in minutes |
bucket_account |
CHANGE ME |
string |
Name of the account (must exist), in which to create the S3 bucket where CloudTrail logs will be delivered |
bucket_name |
CHANGE ME |
string |
Name of the S3 bucket to send CloudTrail logs to |
bucket_region |
us-west-2 |
string |
Region where to enable global events logging |
global_cloudtrail_region |
us-west-2 |
string |
Region where to enable the global CloudTrail |
sns_topic_name |
CHANGE ME |
string |
Name of the SNS topic for CloudTrail log delivery |
sqs_queue_account |
CHANGE ME |
string |
Name of the account (must exist) which owns the SQS queue for CloudTrail log delivery notifications |
sqs_queue_name |
SET ME |
string |
Name of the SQS queue |
sqs_queue_region |
us-west-2 |
string |
Region for the SQS queue |
trail_name |
us-west-2 |
string |
Name of the CloudTrail trail region |
Project details
Release history Release notifications | RSS feed
Download files
Download the file for your platform. If you're not sure which to choose, learn more about installing packages.
Source Distribution
Hashes for cinq-auditor-cloudtrail-1.1.8.tar.gz
Algorithm | Hash digest | |
---|---|---|
SHA256 | 30c3c390dd622082f07a76a3efbe476a56fc8498f53bdba67d321daf277e6273 |
|
MD5 | def24934ff9aa3ff7f12c94c03cc5441 |
|
BLAKE2b-256 | 2923f0a9c3205f081b3ff5041c2488c9e4c2573638d7ce521ca5a88607715863 |