Configuration to enable logging the DNS queries that originate in an Amazon VPC using the Route53 Resolver Query Logging feature. Query logs can be sent to CloudWatch logs, S3 Buckets, or Kinesis Data Firehose

Provide the following details to configure Route53 Resolver Query Logging: 

  • VPC Id: The VPC Id for which DNS queries should be logged
  • Destination Arn: The ARN of the CloudWatch Log Group, S3 bucket, or Kinesis Data Firehose Delivery Stream

Route53QueryLoggingConfig
AWS::Route53Resolver::ResolverQueryLoggingConfig


Route53QueryLoggingConfigAssociation
AWS::Route53Resolver::ResolverQueryLoggingConfigAssociation


LogGroup
AWS::Logs::LogGroup


CloudFormation Template

Share Template