Skip to main content

πŸ’Ό 4.12 Ensure changes to network gateways are monitored (Manual)

  • Contextual name: πŸ’Ό 4.12 Ensure changes to network gateways are monitored (Manual)
  • ID: /frameworks/cis-aws-v5.0.0/04/12
  • Located in: πŸ’Ό 4 Monitoring

Description​

Real-time monitoring of API calls can be achieved by directing CloudTrail Logs to CloudWatch Logs or an external Security Information and Event Management (SIEM) environment, and establishing corresponding metric filters and alarms.

Network gateways are required to send and receive traffic to a destination outside of a VPC. It is recommended that a metric filter and alarm be established for changes to network gateways.

Similar​

  • Sections
    • /frameworks/cis-aws-v4.0.1/04/12

Similar Sections (Take Policies From)​

SectionSub SectionsInternal RulesPoliciesFlags
πŸ’Ό CIS AWS v4.0.1 β†’ πŸ’Ό 4.12 Ensure changes to network gateways are monitored (Manual)1

Similar Sections (Give Policies To)​

SectionSub SectionsInternal RulesPoliciesFlags
πŸ’Ό CIS AWS v4.0.1 β†’ πŸ’Ό 4.12 Ensure changes to network gateways are monitored (Manual)1

Sub Sections​

SectionSub SectionsInternal RulesPoliciesFlags

Policies (1)​

PolicyLogic CountFlags
πŸ“ AWS CloudTrail Network Gateways Changes Monitoring is not enabled 🟒🟒 x3