Overview
Amazon Cognito is a service that you can use to create unique identities for your users, authenticate these identities with identity providers, and save mobile user data in the AWS Cloud.
Enable this integration to see your Cognito Advanced Security metrics in Datadog.
Setup
Installation
If you haven’t already, set up the Amazon Web Services integration first.
Metric collection
- In the AWS integration page, ensure that
Cognito
is enabled under the Metric Collection
tab. - Install the Datadog - Amazon Cognito integration.
Note: Advanced Security must be enabled in AWS. See the AWS documentation to add Advanced Security to a User Pool.
Log collection
Enable logging
Configure Amazon Cognito to send logs either to a S3 bucket or to CloudWatch.
Note: Only user pool logs can be sent. Amazon does not support the sending of other Cognito logs.
Note: If you log to a S3 bucket, make sure that amazon_cognito
is set as Target prefix.
Send logs to Datadog
If you haven’t already, set up the Datadog Forwarder Lambda function.
Once the Lambda function is installed, manually add a trigger on the S3 bucket or CloudWatch log group that contains your Amazon Cognito logs in the AWS console:
Data Collected
Metrics
See metric-spec.yaml for a list of metrics provided by this integration.
Events
The Amazon Cognito integration does not include any events.
Service Checks
The Amazon Cognito integration does not include any service checks.
Troubleshooting
Need help? Contact Datadog support.