Can CloudWatch metric filters be created on logs in a different account?


Alarms and dashboards can be created in one monitoring account based on metrics from one or more source accounts using CloudWatch's cross account cross region capability. Can metric filters be created in a similar way - deployed to the monitoring account but based on source accounts?

I assume not given AWS::Logs::MetricFilter has property "LogGroupName" rather than ARN, but hope to be wrong. This would be great for use cases where alarms are centralised but there's no requirement for, or even security or governance constraints against centralising logs.

Thank you putting your query on re:Post.

Yes your understand is correct. At the moment we cannot create a metric filter for cross account scenarios. However, I will make sure to forward it is a good feature use case with our internal team and echo your feedback. I hope it helps.

Please feel free to reach out to us in case you have any further queries.

Have a great day ahead!

answered 6 months ago

