From e74e74f92fc285e542d5a03977147bddac27f76b Mon Sep 17 00:00:00 2001 From: Jagadisha V <129049263+JV0812@users.noreply.github.com> Date: Mon, 28 Oct 2024 11:46:54 +0530 Subject: [PATCH 1/4] Update aws-cloudtrail.md --- .../aws-cloudtrail.md | 14 ++++---------- 1 file changed, 4 insertions(+), 10 deletions(-) diff --git a/docs/integrations/cloud-security-monitoring-analytics/aws-cloudtrail.md b/docs/integrations/cloud-security-monitoring-analytics/aws-cloudtrail.md index 621b8bf4f3..3156c258f6 100644 --- a/docs/integrations/cloud-security-monitoring-analytics/aws-cloudtrail.md +++ b/docs/integrations/cloud-security-monitoring-analytics/aws-cloudtrail.md @@ -12,7 +12,7 @@ import useBaseUrl from '@docusaurus/useBaseUrl'; This set of CloudTrail monitoring and analytics dashboards provide one dashboard for the most critical analytics. Think of this bundle of dashboards as a good starting place to see trends and outliers on specific aspects of your CloudTrail data -- including access monitoring, login activity, system monitoring, privileged activity, and threat intelligence. -## Collecting logs for the AWS CloudTrail PCI Compliance App +## Collecting logs for the AWS CloudTrail App This section has instructions for configuring log collection for the AWS CloudTrail app. @@ -87,7 +87,7 @@ _sourceCategory=AWS_EAGLE (*Security* OR *Network*) In some cases, your query results may show `"HIDDEN_DUE_TO_SECURITY_REASONS"` as the value of the `userName` field. That's because AWS does not log the user name that was entered when a sign-in failure is caused by an incorrect user name. -## Installing the PCI Compliance AWS CloudTrail App +## Installing the AWS CloudTrail App Now that you have set up collection, install the Amazon CloudTrail - Cloud Security Monitoring and Analytics app to use the preconfigured searches and Dashboards that provide insight into your data. @@ -97,15 +97,9 @@ import AppInstall from '../../reuse/apps/app-install.md'; ## Viewing AWS CloudTrail Dashboards -The Cloud Security Monitoring & Analytics for AWS CloudTrail App provides dashboards that you can modify for your specific security operational needs. - -* Access Monitoring -* Login Activity -* Account and System Monitoring -* Overview -* Privileged Activity -* Threat Intelligence +import ViewDashboards from '../../reuse/apps/view-dashboards.md'; + ### Security Analytics - Access Monitoring From 064b9de14b336974b6af04ca699d5c4b78cb49bb Mon Sep 17 00:00:00 2001 From: Jagadisha V <129049263+JV0812@users.noreply.github.com> Date: Tue, 29 Oct 2024 14:26:06 +0530 Subject: [PATCH 2/4] Update docs/integrations/cloud-security-monitoring-analytics/aws-cloudtrail.md Co-authored-by: John Pipkin (Sumo Logic) --- .../cloud-security-monitoring-analytics/aws-cloudtrail.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/docs/integrations/cloud-security-monitoring-analytics/aws-cloudtrail.md b/docs/integrations/cloud-security-monitoring-analytics/aws-cloudtrail.md index 3156c258f6..8b67f53378 100644 --- a/docs/integrations/cloud-security-monitoring-analytics/aws-cloudtrail.md +++ b/docs/integrations/cloud-security-monitoring-analytics/aws-cloudtrail.md @@ -87,7 +87,7 @@ _sourceCategory=AWS_EAGLE (*Security* OR *Network*) In some cases, your query results may show `"HIDDEN_DUE_TO_SECURITY_REASONS"` as the value of the `userName` field. That's because AWS does not log the user name that was entered when a sign-in failure is caused by an incorrect user name. -## Installing the AWS CloudTrail App +## Installing the AWS CloudTrail app Now that you have set up collection, install the Amazon CloudTrail - Cloud Security Monitoring and Analytics app to use the preconfigured searches and Dashboards that provide insight into your data. From 95cf3f06ca8db30fff3739ebc68373dc2bd3182a Mon Sep 17 00:00:00 2001 From: Jagadisha V <129049263+JV0812@users.noreply.github.com> Date: Tue, 29 Oct 2024 14:26:13 +0530 Subject: [PATCH 3/4] Update docs/integrations/cloud-security-monitoring-analytics/aws-cloudtrail.md Co-authored-by: John Pipkin (Sumo Logic) --- .../cloud-security-monitoring-analytics/aws-cloudtrail.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/docs/integrations/cloud-security-monitoring-analytics/aws-cloudtrail.md b/docs/integrations/cloud-security-monitoring-analytics/aws-cloudtrail.md index 8b67f53378..0b326cf176 100644 --- a/docs/integrations/cloud-security-monitoring-analytics/aws-cloudtrail.md +++ b/docs/integrations/cloud-security-monitoring-analytics/aws-cloudtrail.md @@ -95,7 +95,7 @@ import AppInstall from '../../reuse/apps/app-install.md'; -## Viewing AWS CloudTrail Dashboards +## Viewing AWS CloudTrail dashboards import ViewDashboards from '../../reuse/apps/view-dashboards.md'; From e7c16047a4a5e9462917f164c6e639ef801081d9 Mon Sep 17 00:00:00 2001 From: Jagadisha V <129049263+JV0812@users.noreply.github.com> Date: Tue, 29 Oct 2024 14:26:21 +0530 Subject: [PATCH 4/4] Update docs/integrations/cloud-security-monitoring-analytics/aws-cloudtrail.md Co-authored-by: John Pipkin (Sumo Logic) --- .../cloud-security-monitoring-analytics/aws-cloudtrail.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/docs/integrations/cloud-security-monitoring-analytics/aws-cloudtrail.md b/docs/integrations/cloud-security-monitoring-analytics/aws-cloudtrail.md index 0b326cf176..61ee088efe 100644 --- a/docs/integrations/cloud-security-monitoring-analytics/aws-cloudtrail.md +++ b/docs/integrations/cloud-security-monitoring-analytics/aws-cloudtrail.md @@ -12,7 +12,7 @@ import useBaseUrl from '@docusaurus/useBaseUrl'; This set of CloudTrail monitoring and analytics dashboards provide one dashboard for the most critical analytics. Think of this bundle of dashboards as a good starting place to see trends and outliers on specific aspects of your CloudTrail data -- including access monitoring, login activity, system monitoring, privileged activity, and threat intelligence. -## Collecting logs for the AWS CloudTrail App +## Collecting logs for the AWS CloudTrail app This section has instructions for configuring log collection for the AWS CloudTrail app.