Skip to content

Comments

One bucket to rule them all#86

Open
mgmacias95 wants to merge 6 commits intomasterfrom
dev-single-bucket
Open

One bucket to rule them all#86
mgmacias95 wants to merge 6 commits intomasterfrom
dev-single-bucket

Conversation

@mgmacias95
Copy link
Collaborator

Issue #, if available:
closes #85

Description of changes:

  • Created a single bucket to store all logs
  • Merged all cloudwatch rules into a single one
  • Updated Wazuh configuration to work using this change
  • Merged policies
  • Reconfigured VPC and CloudTrail

By submitting this pull request, I confirm that my contribution is made under the terms of the Apache 2.0 license.

@mgmacias95 mgmacias95 added the aws Related to AWS technologies label May 3, 2019
@mgmacias95 mgmacias95 requested a review from sonofagl1tch May 3, 2019 17:18
Copy link
Owner

@sonofagl1tch sonofagl1tch left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

VPC flow is not writing to a single bucket subdirectory and it looks like GD events are writing to both a gd directory and the macie directory. I am not sure of root cause but we need to review the template code for it.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

aws Related to AWS technologies

Projects

None yet

Development

Successfully merging this pull request may close these issues.

add option to choose between 1 s3 bucket for all logs or 1 s3 bucket per service

2 participants