Medium RDS Regional

Aurora MySQL DB clusters should publish audit logs to CloudWatch Logs

NIST 800-53PCI DSS v4.0.1ISO 27001HIPAA

Description

Verifies that Aurora MySQL DB clusters are configured to publish audit logs to CloudWatch Logs.


Remediation

Enable audit log publishing to CloudWatch Logs for your Aurora MySQL DB clusters.

Steps

  1. Go to the AWS RDS console.
  2. Select the Aurora MySQL DB cluster.
  3. Go to the 'Logs & events' tab.
  4. Enable 'Audit logs' in the CloudWatch Logs exports section.
  5. Save the changes.

Compliance

NIST 800-53PCI DSS v4.0.1ISO 27001HIPAA