Updated on 2024-10-15 GMT+08:00

RDS Instances Have Audit Log Enabled

Rule Details

Table 1 Rule details

Parameter

Description

Rule Name

rds-instance-enable-auditLog

Identifier

rds-instance-enable-auditLog

Description

If an RDS instance does not have the audit log enabled or the audit logs are kept for less than the specified number of days, this instance is noncompliant.

Tag

rds

Trigger Type

Configuration change

Filter Type

rds.instances

Configure Rule Parameters

keepDays: number of days for storing audit logs