homayoon khalili
Given the 3 access methods to AWS resources that is discussed (federation to corporate AD or other open ID identity providers, federation with a mobile device app say suing off of say Facebook, and another AWS account: how do we know which method is being used and if other ones are blocked?Where is these methods logged or documented so we can audit them?
1 Answers
Mark Laczynski
Access to AWS resources is logged via CloudTrail.
to be more exact. API calls to access AWS resources are logged via CT. 😉