Low
CloudTrail
Regional
CloudTrail trails should be tagged
Description
Flags AWS CloudTrail trails that have no user-defined tags. Tags help associate trails with their owning team, environment, and compliance program; untagged trails are operationally opaque.
Remediation
Apply at least one user-defined tag to every CloudTrail trail.
Steps
- Open the CloudTrail console and select the trail.
- Choose the Tags tab and select Add tag.
- Add at least one tag with a non-aws: prefixed key (e.g. Owner, Environment, CostCenter).
- Save the changes.