Medium
Transfer
Regional
Transfer Family connectors should have logging enabled
NIST 800-53
Description
Verifies that CloudWatch logging is enabled for AWS Transfer Family connectors.
Remediation
To enable CloudWatch logging for Transfer Family connectors, configure a logging role for each connector.
Steps
- Open the AWS Transfer Family console.
- Select the connector that needs logging enabled.
- Go to the 'Logging' section in the connector settings.
- Create an IAM role with permissions to write logs to CloudWatch Logs.
- Attach the IAM role to the connector as the logging role.
- Save the connector configuration.
Compliance
NIST 800-53