💼 [DocumentDB.4] Amazon DocumentDB clusters should publish audit logs to CloudWatch Logs
-
Contextual name: 💼 [DocumentDB.4] Amazon DocumentDB clusters should publish audit logs to CloudWatch Logs
-
ID: /frameworks/aws-fsbp-v1.0.0/documentdb/04
-
Located in: 💼 DocumentDB
Description​
Amazon DocumentDB (with MongoDB compatibility) allows you to audit events that
were performed in your cluster. Examples of logged events include successful
and failed authentication attempts, dropping a collection in a database, or
creating an index. By default, auditing is disabled in Amazon DocumentDB and
requires that you take action to enable it.
Similar​
- AWS Security Hub
- Internal
Similar Sections (Give Policies To)​
Section | Sub Sections | Internal Rules | Policies | Flags |
---|
💼 NIST SP 800-53 Revision 5 → 💼 AC-2(4) Account Management _ Automated Audit Actions | | 14 | 16 | |
💼 NIST SP 800-53 Revision 5 → 💼 AC-4(26) Information Flow Enforcement _ Audit Filtering Actions | | | 9 | |
💼 NIST SP 800-53 Revision 5 → 💼 AC-6(9) Least Privilege _ Log Use of Privileged Functions | | 17 | 19 | |
💼 NIST SP 800-53 Revision 5 → 💼 AU-2 Event Logging | 4 | | 17 | |
💼 NIST SP 800-53 Revision 5 → 💼 AU-3 Content of Audit Records | 3 | 13 | 28 | |
💼 NIST SP 800-53 Revision 5 → 💼 AU-6(3) Audit Record Review, Analysis, and Reporting _ Correlate Audit Record Repositories | | | 8 | |
💼 NIST SP 800-53 Revision 5 → 💼 AU-6(4) Audit Record Review, Analysis, and Reporting _ Central Review and Analysis | | | 8 | |
💼 NIST SP 800-53 Revision 5 → 💼 AU-10 Non-repudiation | 5 | | 7 | |
💼 NIST SP 800-53 Revision 5 → 💼 AU-12 Audit Record Generation | 4 | 47 | 65 | |
💼 NIST SP 800-53 Revision 5 → 💼 CA-7 Continuous Monitoring | 6 | | 10 | |
💼 NIST SP 800-53 Revision 5 → 💼 SC-7(9) Boundary Protection _ Restrict Threatening Outgoing Communications Traffic | | | 14 | |
💼 NIST SP 800-53 Revision 5 → 💼 SI-3(8) Malicious Code Protection _ Detect Unauthorized Commands | | | 5 | |
💼 NIST SP 800-53 Revision 5 → 💼 SI-4(20) System Monitoring _ Privileged Users | | | 5 | |
💼 NIST SP 800-53 Revision 5 → 💼 SI-7(8) Software, Firmware, and Information Integrity _ Auditing Capability for Significant Events | | | 8 | |
💼 PCI DSS v4.0.1 → 💼 10.3.3 Audit log files, including those for external-facing technologies, are promptly backed up to a secure, central, internal log server(s) or other media that is difficult to modify. | | | | |
Sub Sections​
Section | Sub Sections | Internal Rules | Policies | Flags |
---|