Amazon Relational Database Service (RDS) activity reporting

Amazon Relational Database Service (RDS) enables users to scale and operate a relational database in the cloud. AWS CloudTrail logs all Amazon RDS API calls made by or on behalf of an AWS account. This logging information is then stored in an Amazon S3 bucket. Cloud Security Plus uses this logging information to monitor the activity of Amazon RDS DB instances.

Amazon Relational Database Service (RDS) activity reporting

RDS insights offered by Cloud Security Plus

Cloud Security Plus offers more than 15 reports covering various RDS events. These reports provide information on which user performed an action, the source IP address of a request, the request parameters, the time an event occurred, and more. The RDS activity covered by the reports is as follows:

  • RDS events with an error.
  • RDS instances that have been recently created and deleted.
  • IAM roles recently added to a DB cluster.
  • Tags recently added to RDS resources.
  • Authorized or revoked DB security group ingress.
  • DB security groups that have been created or deleted.
  • DB snapshots that have been recently created or deleted.
  • Updated DB snapshots.
  • Created, deleted, or restored DB clusters.
  • Restored DB instances.

Are you looking for a unified SIEM solution that can help you track your Amazon Relational Database activities? Try Log360 today!

  Free 30-day trial Request demo