Skip to content

AWS CloudTrail

Cyderes supports the ingestion of AWS CloudTrail logs via an S3 Bucket

Chronicle Data Types

  • AWS_CLOUDTRAIL

Configuration

  1. Create a new S3 bucket for the CloudTrail logs to be stored in. A pre-existing S3 bucket may also be used. This guide AWS Guide can be followed.
  2. Follow this AWS Guide to set up CloudTrail logging to the S3 bucket
  3. Confirm CloudTrail logs are flowing into the S3 bucket
  4. Follow the AWS S3 Bucket guide to create an IAM user for Cyderes that can access this S3 bucket
  5. Provide the authentication information to Cyderes as directed by the AWS S3 Bucket Guide