In this section, we will run through setting up a new CloudTrail trail that follows all the recommended best practices for the most effective/secure setup. We will show the setup steps using the AWS web console, but everything we do is also possible through the AWS CLI and we will go through auditing CloudTrail through the CLI.
Setup, best practices, and auditing
Setup
Lets begin to set up CloudTrail by following these steps:
- The first thing we will do is navigate to the CloudTrail service in the AWS web console and click the Create trail button on the main page:
Figure 1: Where to find the Create trail button on the CloudTrail service page
- We are going to name our trail ExampleTrail, then the next option we are presented...