πΌ 4.6 Ensure a log metric filter and alarm exist for AWS Management Console authentication failures
- Contextual name: πΌ 4.6 Ensure a log metric filter and alarm exist for AWS Management Console authentication failures
- ID:
/frameworks/cis-aws-v1.4.0/04/06
- Located in: πΌ 4 Monitoring
Descriptionβ
Real-time monitoring of API calls can be achieved by directing CloudTrail Logs to CloudWatch Logs and establishing corresponding metric filters and alarms. It is recommended that a metric filter and alarm be established for failed console authentication attempts.
Similarβ
- Sections
/frameworks/cis-aws-v1.5.0/04/06
/frameworks/cis-aws-v1.3.0/04/06
- Internal
- ID:
dec-c-581b034c
- ID:
Similar Sections (Take Policies From)β
Section | Sub Sections | Internal Rules | Policies | Flags |
---|---|---|---|---|
πΌ CIS AWS v1.3.0 β πΌ 4.6 Ensure a log metric filter and alarm exist for AWS Management Console authentication failures | 1 | |||
πΌ CIS AWS v1.5.0 β πΌ 4.6 Ensure a log metric filter and alarm exist for AWS Management Console authentication failures - Level 2 (Automated) | 1 |
Similar Sections (Give Policies To)β
Section | Sub Sections | Internal Rules | Policies | Flags |
---|---|---|---|---|
πΌ CIS AWS v1.3.0 β πΌ 4.6 Ensure a log metric filter and alarm exist for AWS Management Console authentication failures | 1 | |||
πΌ CIS AWS v1.5.0 β πΌ 4.6 Ensure a log metric filter and alarm exist for AWS Management Console authentication failures - Level 2 (Automated) | 1 |
Sub Sectionsβ
Section | Sub Sections | Internal Rules | Policies | Flags |
---|
Policies (1)β
Policy | Logic Count | Flags |
---|---|---|
π AWS CloudTrail Management Console Authentication Failures Monitoring is not enabled π’ | π’ x3 |