Overview

A CloudWatch Event Rule that detects changes to S3 bucket policies and publishes change events to an SNS topic for notification.

Configuration Templates

Items
2
Size
1.1 KB
AWSTemplateFormatVersion: '2010-09-09'
Description: ''
Resources:
  SnsTopic:
    Type: 'AWS::SNS::Topic'
    Properties:
      Subscription:
        - Endpoint: email@example.com
          Protocol: email
      TopicName: event-rule-action
  EventRule:
    Type: 'AWS::Events::Rule'
    Properties:
      Name: detect-s3-bucket-policy-changes
      Description: >-
        A CloudWatch Event Rule that detects changes to S3 bucket policies and
        publishes change events to an SNS topic for notification.
      State: ENABLED
      Targets:
        - Arn:
            Ref: SnsTopic
          Id: target-id1
      EventPattern:
        detail-type:
          - AWS API Call via CloudTrail
        detail:
          eventSource:
            - s3.amazonaws.com
          eventName:
            - PutBucketAcl
            - PutBucketPolicy
            - PutBucketCors
            - PutBucketLifecycle
            - PutBucketReplication
            - DeleteBucketPolicy
            - DeleteBucketCors
            - DeleteBucketLifecycle
            - DeleteBucketReplication
Parameters: {}
Metadata: {}
Conditions: {}

Actions



Customize Cf Template

Rule Configuration

Target Details


* Required field

Sources and Documentation

Configuration Source: AWS Quickstart

Additional Documentation: