AWS CloudTrail Adds Data Event Delivery to Amazon CloudWatch Logs

AWS CloudTrail now enables you to send S3 data events recorded by CloudTrail to Amazon CloudWatch Logs for search, alerting, or additional analysis. CloudTrail data events allow you to record detailed S3 object-level API activity, such as the AWS account of the caller, IP address of the API call, and time of the API call. Previously, only management events could be delivered to CloudWatch Logs. Now, both management events and object-level Amazon S3 data events can be delivered to CloudWatch Logs. For example, you can now create alarms and receive notifications when you create, modify, or delete a file in your S3 bucket.
Quelle: aws.amazon.com

USAspending.gov data available via Amazon Relational Database Service (RDS)

USAspending.gov data is now available for anyone to access via Amazon Relational Database Service (RDS). USAspending.gov is a government website launched in 2007 to provide access to the federal spending data mandated by the Federal Funding Accountability and Transparency Act of 2006. USAspending.gov includes data on all spending by the federal government, including contracts, grants, loans, employee salaries, and more. This data can be used by researchers, entrepreneurs, and anyone interested in analyzing how federal tax dollars are spent. Learn more about how to access the data on the USAspending.gov on AWS landing page and on Jeff Barr’s blog.
Quelle: aws.amazon.com

Amazon Chime Improves End-User Management by Adding the Ability to Claim Your Domain, and to Integrate with Microsoft Active Directory

Amazon Chime has added two new capabilities to simplify end user management. First, you can now claim your corporate domain to use with Amazon Chime, which means that any user that signs up for Amazon Chime using an email address in your corporate domain is automatically added to your Amazon Chime account. Second, you can now configure Amazon Chime to use your Microsoft Active Directory (AD) for user management and authentication. This allows you to manage your users individually or in groups, easily assign Amazon Chime subscriptions to specific users or groups in your organization, and to apply the password policies you’ve already set to Amazon Chime. End users don’t need to manually create an Amazon Chime account, and they can log in using their existing corporate credentials.
Quelle: aws.amazon.com

Limit Increase for IPSet Conditions for AWS WAF

We are announcing today a limit increase to the number of CIDR or IP Address entries customers can have within an IPSet condition in an AWS WAF Rule. We have increased the limit from 1,000 to 10,000 entries per condition. Customers who want even larger lists of IP addresses can create multiple rules. With this limit increase customers can now import larger IP reputational lists and customer who have multiple IPSet rules can now consolidate them into fewer rules. As you know, IPSet Rules are used to specify which web requests customers want to allow or block based on the IP addresses that the requests originate from.
Quelle: aws.amazon.com

AWS WAF on Application Load Balancer now Integrated with AWS CloudTrail

You can now log all your API calls to AWS WAF on Application Load Balancer (ALB) through AWS CloudTrail, the AWS service that records API calls for your account and delivers log files to your Amazon S3 bucket. CloudTrail logs can be used to enable security analysis, track changes to your AWS resources, and aid in compliance auditing. Integrating AWS WAF and CloudTrail lets you determine which requests were made to the AWS WAF API, the source IP address from which each request was made, who made the request, when it was made, and more.
Quelle: aws.amazon.com