Cloudtrail with SNS Notification

  1. Create a new Trail
  2. Under the Trail, you should see an S3 tab. Create an Amazon S3 bucket  for the log files.
  3. Click on Advanced Options on the same screen. You should see an SNS radiobutton.
  4. Create an Amazon SNS topic to receive notifications when log files are delivered. Delivery notifications from all regions are sent to the topic that you specify.

Monitor Specific Log Events?

If you want to monitor specific events, configure CloudWatch Logs to receive your logs from CloudTrail

  1. Turn on log file encryption. This encrypts your files for added security.
  2. Turn on integrity validation for log files. This enables the delivery of digest files that you can use to validate the integrity of log files after CloudTrail has delivered them.
  3. Add tags (custom key-value pairs) to your trail.

Anuj holds professional certifications in Google Cloud, AWS as well as certifications in Docker and App Performance Tools such as New Relic. He specializes in Cloud Security, Data Encryption and Container Technologies.

Initial Consultation

Anuj Varma – who has written posts on Anuj Varma, Hands-On Technology Architect, Clean Air Activist.