Medium DataSync Regional

DataSync tasks should have logging enabled

FSBP

Description

Verifies that AWS DataSync tasks have logging enabled. Audit logs record system activity, support incident investigation, and help meet regulatory compliance requirements.


Remediation

Enable logging for your AWS DataSync tasks to ensure proper monitoring and audit trail.

Steps

  1. Navigate to the AWS DataSync console
  2. Select the DataSync task that needs logging enabled
  3. Edit the task configuration
  4. In the 'Options' section, enable logging
  5. Configure the log level (e.g., TRANSFER, ERROR, etc.)
  6. Set up CloudWatch Logs destination if needed
  7. Save the configuration changes
  8. Verify that logging is now enabled for the task

Compliance

FSBP