By using AWS re:Post, you agree to the Terms of Use
/GuardDuty Protecting EKS - How to Estimate Log Quantity?/

GuardDuty Protecting EKS - How to Estimate Log Quantity?


How do I find the quantity of EKS Audit Logs across multiple accounts (100's) to price GuardDuty as accurately as possible?

1 Answers

I think the question in general is kind of moot.

In CFM the point is not to estimate which is extremely difficult for many services for example S3 or EKS audit logs.

As the service has 30 day free trail, just enable it and see the estimate yourself.

Additionally you can also monitor one or two cluster for their actual behavior. This can be achieved by enabling control plane logging (specifically audit logs) in couple of clusters and observe the log volume let's say in CloudWatch.

answered a month ago
  • This is the approach Im taking - averaging the logs across a number of select accounts and estimating the cost from there. My next step is the enable GD for the trial period. I just want to ask if there was a more accurate way to estimate logs across a large number of accounts. Thanks for your answer.

You are not logged in. Log in to post an answer.

A good answer clearly answers the question and provides constructive feedback and encourages professional growth in the question asker.

Guidelines for Answering Questions