Overview

A CloudWatch Event Rule that detects changes to CloudTrail configutation and publishes change events to an SNS topic for notification.

Configuration Templates

Items
2
Size
0.9 KB
AWSTemplateFormatVersion: '2010-09-09'
Description: ''
Resources:
  SnsTopic:
    Type: 'AWS::SNS::Topic'
    Properties:
      Subscription:
        - Endpoint: email@example.com
          Protocol: email
      TopicName: event-rule-action
  EventRule:
    Type: 'AWS::Events::Rule'
    Properties:
      Name: detect-cloudtrail-changes
      Description: >-
        A CloudWatch Event Rule that detects changes to CloudTrail configutation
        and publishes change events to an SNS topic for notification.
      State: ENABLED
      Targets:
        - Arn:
            Ref: SnsTopic
          Id: target-id1
      EventPattern:
        detail-type:
          - AWS API Call via CloudTrail
        detail:
          eventSource:
            - cloudtrail.amazonaws.com
          eventName:
            - StopLogging
            - DeleteTrail
            - UpdateTrail
Parameters: {}
Metadata: {}
Conditions: {}

Actions



Customize Cf Template

Rule Configuration

Target Details


* Required field

Sources and Documentation

Configuration Source: AWS Quickstart

Additional Documentation: