Skip to main content

CloudTrail auditor

Project description

Please open issues in the Cloud-Inquisitor repository

Description

This auditor ensures that CloudTrail:

  • is enabled globally on multi-region

  • logs to a central location

  • has SNS/SQS notifications enabled and being sent to the correct queues

  • and that regional trails (of our chosen name) are not enabled

Configuration Options

Option name

Default Value

Type

Description

enabled

False

bool

Enable the CloudTrail auditor

interval

60

int

Run frequency in minutes

bucket_account

CHANGE ME

string

Name of the account (must exist), in which to create the S3 bucket where CloudTrail logs will be delivered

bucket_name

CHANGE ME

string

Name of the S3 bucket to send CloudTrail logs to

bucket_region

us-west-2

string

Region where to enable global events logging

global_cloudtrail_region

us-west-2

string

Region where to enable the global CloudTrail

sns_topic_name

CHANGE ME

string

Name of the SNS topic for CloudTrail log delivery

sqs_queue_account

CHANGE ME

string

Name of the account (must exist) which owns the SQS queue for CloudTrail log delivery notifications

sqs_queue_name

SET ME

string

Name of the SQS queue

sqs_queue_region

us-west-2

string

Region for the SQS queue

trail_name

us-west-2

string

Name of the CloudTrail trail region

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

cinq-auditor-cloudtrail-2.0.0.tar.gz (6.9 kB view details)

Uploaded Source

File details

Details for the file cinq-auditor-cloudtrail-2.0.0.tar.gz.

File metadata

File hashes

Hashes for cinq-auditor-cloudtrail-2.0.0.tar.gz
Algorithm Hash digest
SHA256 f71755e1aed43112144731cad4053fef707a5d196b2f1faf14346caf6a697fac
MD5 ffddef2fdb66a423682d267566f8165a
BLAKE2b-256 5644413ab2869de7267ba1608e4e1fbf65cdf17af6a5afa5e72e5a458fff1552

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page