AWS has a complete suite of services to cater to all your logging needs for adhering to your security and operational best practices, as well as meeting your compliance and regulatory requirements. So, you have all the logs that you need to capture, with storage, monitoring, and analyzing facilities available in AWS, keeping the dynamic nature of cloud computing.
To begin, let us look at various logs available in AWS. All the logs in AWS can be classified into three categories, as shown in the following table:
AWS infrastructure logs |
AWS service logs |
Host-based logs |
AWS CloudTrail
|
Amazon S3
|
Messages
|
AWS VPC flow logs
|
AWS ELB
|
IIS/Apache
|
Amazon CloudFront
|
Windows Event logs
|
|
AWS Lambda
|
Custom logs
|
Table 1 - AWS logs classification
AWS infrastructure logs, such as CloudTrail Logs, contain information related to all API activity...