Medium RDS Regional

Aurora PostgreSQL DB clusters should publish logs to CloudWatch Logs

PCI DSS v4.0.1PCI DSS 10.4.2

Description

Verifies that Aurora PostgreSQL DB clusters publish postgresql logs to CloudWatch Logs.


Remediation

Enable PostgreSQL log publishing to CloudWatch Logs for Aurora PostgreSQL clusters.

Steps

  1. Sign in to the AWS Management Console and open the Amazon RDS console.
  2. Select the Aurora PostgreSQL cluster and choose 'Modify'.
  3. Locate the 'Log Exports' setting.
  4. Select 'postgresql' from the available log types.
  5. Save the changes.

Compliance

PCI DSS v4.0.1PCI DSS 10.4.2