Help Center/ Config/ User Guide/ Resource Compliance/ Built-In Policies/ Cloud Trace Service/ CTS Trackers Have Trace Transfer to LTS Enabled
Updated on 2024-10-28 GMT+08:00

CTS Trackers Have Trace Transfer to LTS Enabled

Rule Details

Table 1 Rule details

Parameter

Description

Rule Name

cts-lts-enable

Identifier

cts-lts-enable

Description

If a CTS tracker does not have trace transfer to LTS enabled, this tracker is noncompliant.

Tag

cts

Trigger Type

Configuration change

Filter Type

cts.trackers

Configure Rule Parameters

None

Applicable Scenario

CTS records tenant operations on cloud resources, such as creating, modifying, and deleting cloud resources, and stores operations as traces on CTS console for seven days. To store traces for more than seven days, configure trace transfer to LTS.

Solution

You can enable trace transfer to LTS for the noncompliant CTS trackers..

Rule Logic

  • If a CTS tracker (disabled or enabled) has trace transfer to LTS enabled, this tracker is compliant.
  • If a CTS tracker (disabled or enabled) does not have trace transfer to LTS enabled, this tracker is noncompliant.

Constraints

If an organization CTS tracker is involved, and this rule is triggered with a member account from this organization, there may be a lag of up to 24 hours in updating the evaluating results due to the delay in collecting tracker resources deployed by the organization administrator.