Skip to main content

Configure AWS CloudTrail Redundant Trails

  1. Configure AWS CloudTrail Redundant Trails
  2. Use Case for AWS CloudTrail Redundant Trails
  3. Triage Guides by Violation Type
    1. Triage AWS CloudTrail Redundant Trails REDUNDANT_GLOBAL_TRAILS

How do I enable this policy?

Signature:
Type: Pyrae::Policy::PolicyDocument::Signatory
Properties:
SignatureTeamUrn: { "PyRef": "PyraeTeam" }
PolicyUrn: "urn:pyrae:policy:us-west-2:sAutx4ZxiqTJUzJdvky2km:policy/AwsCloudtrailRedundantTrails"

What permissions does this policy require in my AWS account?

{
"Version": "2012-10-17",
"Statement": [
{
"Effect": "Allow",
"Action": "cloudtrail:ListTrails",
"Resource": "*"
},
{
"Effect": "Allow",
"Action": "cloudtrail:GetTrail",
"Resource": "*"
}
]
}

What resources match this policy?

Type: Pyrae::Observer::MatchingRule
Properties:
MatchAccountType: aws
MatchUrnService: cloudtrail
MatchUrnResourceType: trail