Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Patch 419 #441

Merged
merged 5 commits into from
Oct 31, 2022
Merged
Show file tree
Hide file tree
Changes from 4 commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
12 changes: 6 additions & 6 deletions en/aws/cloudtrail/cloudtrail-file-validation.md
Original file line number Diff line number Diff line change
Expand Up @@ -15,10 +15,10 @@
| **Recommended Action** | Enable CloudTrail file validation for all regions |

## Detailed Remediation Steps
1. Log into the AWS Management Console.
1. Log in to the AWS Management Console.
2. Select the "Services" option and search for "CloudTrail".</br><img src="/resources/aws/cloudtrail/cloudtrail-file-validation/step2.png"/>
3. In the "Dashboard" panel click on "View trails" button.</br> <img src="/resources/aws/cloudtrail/cloudtrail-file-validation/step3.png"/>
4. Select the "trail" that needs to be verified under "Name" column.</br><img src="/resources/aws/cloudtrail/cloudtrail-file-validation/step4.png"/>
5. Scroll down and under the "Storage location" option check for "Enable log file validation". If its status is "No" the selected trail does not support file validation.</br><img src="/resources/aws/cloudtrail/cloudtrail-file-validation/step5.png"/>
6. Click on the pencil icon to get into "Storage location" configuration settings. Scroll down and click on "Yes" next to "Enable log file validation" to enable the "CloudTrail" file validation to determine whether a log file was modified, deleted or unchanged after "CloudTrail" delivered it. </br> <img src="/resources/aws/cloudtrail/cloudtrail-file-validation/step6.png"/>
7. Scroll down and click on "Save" to enable the CloudTrail log encryption.</br><img src="/resources/aws/cloudtrail/cloudtrail-file-validation/step7.png"/>
3. In the "Dashboard" panel click on the desired trail from the list under "Trails" to get to its configuration page.</br> <img src="/resources/aws/cloudtrail/cloudtrail-file-validation/step3.png"/>
4. Click on "Edit" under "General details". </br><img src="/resources/aws/cloudtrail/cloudtrail-file-validation/step4.png"/>
5. Scroll down and under the "Additional settings" option check for "Log file validation". If its status is not selected as "Enabled" then the selected trail does not support file validation.</br><img src="/resources/aws/cloudtrail/cloudtrail-file-validation/step5.png"/>
6. Click on the checkbox under "Log file validation" to change its status to "Enabled" so that the "CloudTrail" file validation to determine whether a log file was modified, deleted or unchanged after "CloudTrail" delivered it is enabled. </br> <img src="/resources/aws/cloudtrail/cloudtrail-file-validation/step6.png"/>
alphadev4 marked this conversation as resolved.
Show resolved Hide resolved
7. Scroll down and click on "Save changes" to enable the CloudTrail log encryption.</br><img src="/resources/aws/cloudtrail/cloudtrail-file-validation/step7.png"/>
Binary file modified resources/aws/cloudtrail/cloudtrail-file-validation/step2.png
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Binary file modified resources/aws/cloudtrail/cloudtrail-file-validation/step3.png
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Binary file modified resources/aws/cloudtrail/cloudtrail-file-validation/step4.png
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Binary file modified resources/aws/cloudtrail/cloudtrail-file-validation/step5.png
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Binary file modified resources/aws/cloudtrail/cloudtrail-file-validation/step6.png
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Binary file modified resources/aws/cloudtrail/cloudtrail-file-validation/step7.png
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.