Skip to main content

ActionTrail Trail Intact Enabled

ID: rule:aliyun:actiontrail-trail-intact-enabled
Severity: high
IaC Types: ROS, Terraform

Description

ActionTrail trail should be enabled and track all event types (Read and Write).

Reason for Violation

The ActionTrail trail is not enabled or does not track all event types.

Recommendation

Set event_rw to "All" and status to "Enable" on the alicloud_actiontrail_trail resource.

Resource Types

  • ROS: ALIYUN::ACTIONTRAIL::Trail
  • Terraform: alicloud_actiontrail_trail