top of page
< Back

AWS Foundational Security Best Practice

RDS.9

Database logging should be enabled

Severity

Cloud Platforms

Resources

MEDIUM

AWS

AWS Relational Database Service

This control checks whether the following Amazon RDS logs are enabled and sent to CloudWatch Logs: Oracle: (Alert; Audit; Trace; Listener); PostgreSQL: (Postgresql; Upgrade); MySQL: (Audit; Error; General; SlowQuery); MariaDB: (Audit; Error; General; SlowQuery); SQL Server: (Error; Agent); Aurora: (Audit; Error; General; SlowQuery); Aurora-MySQL: (Audit; Error; General; SlowQuery); Aurora-PostgreSQL: (Postgresql).

bottom of page