CloudTrail Not Logging All WAFv2 Events

0

I'm not sure if this is a bug or not. Over the last few days, I've created several Web ACLs and deleted several as well. I've also disassociated Web ACLs several times. When looking through my CloudTrail logs (I searched across all regions), I see most CloudTrail API calls except for:

  • AssociateWebACL
  • DisassociateWebACL

even though I know for sure I did this action several times.

The reason I was interested in this is that by default if you remove a Web ACL from a resource by adding another one, it does not warn you and I wanted to create a CloudWatch Event Rule to notify if this happens. And according to the documentation, DisassociateWebACL is an API call: https://docs.aws.amazon.com/waf/latest/APIReference/API_DisassociateWebACL.html

Any ideas? Thanks.

ossie
질문됨 3년 전596회 조회
1개 답변
0

Oops. After re-reading the documentation, it will only issue the above APIs for region-level resources and not for CloudFront distributions. Thanks

ossie
답변함 3년 전

로그인하지 않았습니다. 로그인해야 답변을 게시할 수 있습니다.

좋은 답변은 질문에 명확하게 답하고 건설적인 피드백을 제공하며 질문자의 전문적인 성장을 장려합니다.

질문 답변하기에 대한 가이드라인

관련 콘텐츠