Skip to content

AWS Config and CloudTrail Recording in all Regions #718

Answered by Brian969
mlaro asked this question in Q&A
Discussion options

You must be logged in to vote

Hi Mike,

In many cases it is just as important or even more important you have security controls, logging and tooling deployed in the unused regions. Should an administrator make a mistake a misconfigure something erroneously opening access, bypass the rules themselves, or should a bad actor somehow get access to an environment, they will often try to do things in a location you won't notice (i.e. a region you don't typically work in) - you need logs and alerting in place to be able to track down and alert on the activity, and to understand what was done and by whom. If their is no activity in a region, the volume of logs or events from those regions will be minimal.

Additionally, many Go…

Replies: 2 comments 1 reply

Comment options

You must be logged in to vote
0 replies
Answer selected by Brian969
Comment options

You must be logged in to vote
1 reply
@Brian969
Comment options

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
2 participants