AWS Org CloudTrail - Member Account Not Added Automatically

0

CloudTrail has been setup to log all member accounts under the AWS Organizations. A new account is created however, the trail is not visible from the member account and nothing is being logged. Anyone know where to look to understand why this new account is not associated the main cloudtrail that was setup to do logging for all member accounts?

已提问 2 年前715 查看次数
1 回答
1

When you added new member account in the org, the trail was NOT added to the account? If the trail has been enabled to the admin account of the org with IsOrganizationTrail true, the trail should be automatically added to new member accounts at the same time as created the accounts.

Did you setup anything SCP? (e.g. Deny create-trail)

AWS
suzuki
已回答 2 年前
  • If SCPs were blocking create-trail would removing this automatically fix the issue or are further steps required?

您未登录。 登录 发布回答。

一个好的回答可以清楚地解答问题和提供建设性反馈,并能促进提问者的职业发展。

回答问题的准则