Control: At least one trail should be enabled with security best practices
Description
This rule helps ensure the use of AWS recommended security best practices for AWS CloudTrail, by checking for the enablement of multiple settings. These include the use of log encryption, log validation, and enabling AWS CloudTrail in multiple regions.
Usage
Run the control in your terminal:
powerpipe control run aws_compliance.control.cloudtrail_security_trail_enabled
Snapshot and share results via Turbot Pipes:
powerpipe loginpowerpipe control run aws_compliance.control.cloudtrail_security_trail_enabled --share
SQL
This control uses a named query:
cloudtrail_security_trail_enabled