CloudTrail Flashcards
What is CloudTrail?
CloudTrail logs API and Console actions that impact AWS accounts, providing account traceability.
How long are CloudTrail logs stored by default?
90 days. This is enabled by default and is free. If you want data from more than 90 days ago, or you want data to be stored outside of CloudTrail, you must create a trail.
How resilient is CloudTrail?
CloudTrail is region resilient. It is a regional service.
Where do Global Services log their events?
The us-east-1 region.
What are the default enabled/disabled states for Mangement Event and Data Event logging in CloudTrail?
Management Events: Enabled.
Data Events: Disabled.
Where are CloudTrail trails stored?
S3 or CloudWatch.
Is CloudTrail a realtime service?
No. There is a delay in logging data.