turbot/aws_compliance

Control: At least one trail should be enabled with security best practices

Description

This rule helps ensure the use of AWS recommended security best practices for AWS CloudTrail, by checking for the enablement of multiple settings. These include the use of log encryption, log validation, and enabling AWS CloudTrail in multiple regions.

Usage

Run the control in your terminal:

powerpipe control run aws_compliance.control.cloudtrail_security_trail_enabled

Snapshot and share results via Turbot Pipes:

powerpipe login
powerpipe control run aws_compliance.control.cloudtrail_security_trail_enabled --share

SQL

This control uses a named query:

cloudtrail_security_trail_enabled

Tags