Amazon CloudTrail is an API log monitoring and recording tool. CloudTrail captures and records all the API calls and related events for your account and stores it into S3. You can also deliver the logs to CloudWatch logs and events.
CloudWatch primarily does three tasks:
- Stores log files in S3
- Looks up the API history
- Gives notification on specific API activity
You can create two types of trails:
- A trail that applies to all regions
- A trail that applies to one region