Skip to main content

πŸ’Ό [EC2.171] EC2 VPN connections should have logging enabled

  • Contextual name: πŸ’Ό [EC2.171] EC2 VPN connections should have logging enabled
  • ID: /frameworks/aws-fsbp-v1.0.0/ec2/171
  • Located in: πŸ’Ό Elastic Compute Cloud (EC2)

Description​

AWS Site-to-Site VPN logs provide you with deeper visibility into your Site-to-Site VPN deployments. With this feature, you have access to Site-to-Site VPN connection logs that provide details on IP Security (IPsec) tunnel establishment, Internet Key Exchange (IKE) negotiations, and dead peer detection (DPD) protocol messages. Site-to-Site VPN logs can be published to CloudWatch Logs.

Similar​

Similar Sections (Give Policies To)​

SectionSub SectionsInternal RulesPoliciesFlags
πŸ’Ό PCI DSS v4.0.1 β†’ πŸ’Ό 10.4.2 Logs of all other system components are reviewed periodically.11

Sub Sections​

SectionSub SectionsInternal RulesPoliciesFlags