Checks if Amazon CloudFront distributions are configured to deliver access logs to an Amazon S3 bucket. The rule is NON_COMPLIANT if a CloudFront distribution does not have logging configured.

This config rule supports the following parameters:

  • S3BucketName
    • Required: No
    • Type: String
    • Description:The name of the Amazon S3 bucket for storing server access logs.

CloudFormation Template