cloudtrail-s3-bucket-access-logging
Checks if the S3 bucket configurations for your Amazon CloudTrail logs have Amazon S3 server access logging enabled. The rule is NON_COMPLIANT if at least one S3 bucket for a CloudTrail trail does not have S3 server access logging enabled.
Identifier: CLOUDTRAIL_S3_BUCKET_ACCESS_LOGGING
Resource Types: AWS::CloudTrail::Trail
Trigger type: Periodic
Amazon Web Services Region: All supported Amazon regions
Parameters:
- None
Amazon CloudFormation template
To create Amazon Config managed rules with Amazon CloudFormation templates, see Creating Amazon Config Managed Rules With Amazon CloudFormation Templates.