Advanced configuration of the trail

  1. Create a new S3 bucket for storing the log files: greeter-audit-trail-bucket.
  2. Leave the prefix field blank. Applying a prefix just prepends the value supplied to each log file.
  3. Choose to proceed with S3 Server-Side Encryption (SSE), which is the default.
  4. Choose to validate every log file when it is delivered, to detect tampering.
  5. Choose a Simple Notification Service (SNS) notification, to be triggered upon every log file delivery. For this, choose to create a new topic named greeter-audit-trail-notification-topic, to have the message published to.
  6. Do not choose to integrate CloudWatch just yet.

Configuring ...

Get Hands-On Serverless Applications with Kotlin now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.