Checks if Amazon CloudFront distributions are configured to deliver access logs to an Amazon S3 bucket. The rule is NON_COMPLIANT if a CloudFront distribution does not have logging configured.

This config rule supports the following parameters:

  • S3BucketName
    • Required: No
    • Type: String
    • Description:The name of the Amazon S3 bucket for storing server access logs.

ConfigRule
AWS::Config::ConfigRule


Scope

ComplianceResourceTypes

Source *
CustomPolicyDetails
SourceDetails

CloudFormation Template

Share Template