CloudTrail Not Logging All WAFv2 Events

0

I'm not sure if this is a bug or not. Over the last few days, I've created several Web ACLs and deleted several as well. I've also disassociated Web ACLs several times. When looking through my CloudTrail logs (I searched across all regions), I see most CloudTrail API calls except for:

  • AssociateWebACL
  • DisassociateWebACL

even though I know for sure I did this action several times.

The reason I was interested in this is that by default if you remove a Web ACL from a resource by adding another one, it does not warn you and I wanted to create a CloudWatch Event Rule to notify if this happens. And according to the documentation, DisassociateWebACL is an API call: https://docs.aws.amazon.com/waf/latest/APIReference/API_DisassociateWebACL.html

Any ideas? Thanks.

ossie
質問済み 3年前596ビュー
1回答
0

Oops. After re-reading the documentation, it will only issue the above APIs for region-level resources and not for CloudFront distributions. Thanks

ossie
回答済み 3年前

ログインしていません。 ログイン 回答を投稿する。

優れた回答とは、質問に明確に答え、建設的なフィードバックを提供し、質問者の専門分野におけるスキルの向上を促すものです。

質問に答えるためのガイドライン

関連するコンテンツ