CloudTrail log file validation should be enabled

이 페이지는 아직 영어로 제공되지 않습니다. 번역 작업 중입니다.
현재 번역 프로젝트에 대한 질문이나 피드백이 있으신 경우 언제든지 연락주시기 바랍니다.

Description

CloudTrail log file validation generates a digitally signed digest file containing a hash of each log that CloudTrail writes to S3. This feature helps verify whether a log file was changed, deleted, or remains unchanged after delivery, thereby enhancing the integrity of CloudTrail logs. Enabling log file validation on all trails is recommended.

Remediation

For instructions on enabling log file validation for CloudTrail, refer to the AWS CloudTrail Log File Validation Guide.