{"id":292,"date":"2024-05-19T20:15:49","date_gmt":"2024-05-19T23:15:49","guid":{"rendered":"https:\/\/cleiversouza.tech\/?p=292"},"modified":"2024-05-24T14:33:29","modified_gmt":"2024-05-24T17:33:29","slug":"o-que-e-e-como-configurar-o-aws-cloudtrail","status":"publish","type":"post","link":"https:\/\/cleiversouza.tech\/index.php\/2024\/05\/19\/o-que-e-e-como-configurar-o-aws-cloudtrail\/","title":{"rendered":"O que \u00e9 e como configurar o AWS CloudTrail"},"content":{"rendered":"\n<p><\/p>\n\n\n\n<p><\/p>\n\n\n\n<p>Antes de partirmos para a configura\u00e7\u00e3o, vamos falar um pouco sobre este servi\u00e7o t\u00e3o importante. O AWS CloudTrail \u00e9 um servi\u00e7o que permite registrar, monitorar e reter as atividades de uma ou mais contas da AWS, fornecendo visibilidade sobre as a\u00e7\u00f5es realizadas. Ele \u00e9 capaz de registrar eventos como chamadas de API feitas por usu\u00e1rios, servi\u00e7os e recursos da AWS. No quesito de seguran\u00e7a, podemos dizer que ele \u00e9 um dos servi\u00e7os mais importante da Cloud AWS, o qual contribui muito para a seguran\u00e7a, conformidade e solu\u00e7\u00e3o de problemas.<\/p>\n\n\n\n<p><\/p>\n\n\n\n<h1 class=\"wp-block-heading\">Exemplificando melhor algumas das utilidades do AWS CloudTrail:<\/h1>\n\n\n\n<ul>\n<li><strong>Auditoria de Seguran\u00e7a<\/strong>: Acompanhamento de quem acessou quais recursos e quais a\u00e7\u00f5es foram realizadas, auxiliando na detec\u00e7\u00e3o de atividades suspeitas ou n\u00e3o autorizadas.<\/li>\n\n\n\n<li><strong>Conformidade<\/strong>: Verifica\u00e7\u00e3o se as pol\u00edticas de seguran\u00e7a e conformidade est\u00e3o sendo seguidas, fornecendo registros detalhados para fins de auditoria.<\/li>\n\n\n\n<li><strong>Resolu\u00e7\u00e3o de Problemas<\/strong>: Facilita a solu\u00e7\u00e3o de problemas ao fornecer registros detalhados de atividades que levaram a falhas ou comportamentos inesperados em sistemas AWS.<\/li>\n\n\n\n<li><strong>An\u00e1lise de Uso e Otimiza\u00e7\u00e3o de Recursos<\/strong>: Permite entender como os recursos da AWS est\u00e3o sendo utilizados, identificando oportunidades para otimiza\u00e7\u00e3o de custos e melhorias de desempenho.<\/li>\n<\/ul>\n\n\n\n<p><strong>Agora, iremos partir para configura\u00e7\u00e3o do servi\u00e7o AWS CloudTrail<\/strong><\/p>\n\n\n\n<p>1 &#8211; Realize o login na sua console AWS e na barra de pesquisa digite &#8220;CloudTrail&#8221;, e ent\u00e3o clique no link para abrir a p\u00e1gina do servi\u00e7o:<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img fetchpriority=\"high\" decoding=\"async\" width=\"1024\" height=\"399\" src=\"https:\/\/cleiversouza.tech\/wp-content\/uploads\/2024\/04\/image-33-1024x399.png\" alt=\"\" class=\"wp-image-293\" srcset=\"https:\/\/cdn.shortpixel.ai\/stsp\/to_webp,q_lossy,ret_img\/https:\/\/cleiversouza.tech\/wp-content\/uploads\/2024\/04\/image-33-1024x399.png 1024w, https:\/\/cdn.shortpixel.ai\/stsp\/to_webp,q_lossy,ret_img\/https:\/\/cleiversouza.tech\/wp-content\/uploads\/2024\/04\/image-33-300x117.png 300w, https:\/\/cdn.shortpixel.ai\/stsp\/to_webp,q_lossy,ret_img\/https:\/\/cleiversouza.tech\/wp-content\/uploads\/2024\/04\/image-33-768x299.png 768w, https:\/\/cdn.shortpixel.ai\/stsp\/to_webp,q_lossy,ret_img\/https:\/\/cleiversouza.tech\/wp-content\/uploads\/2024\/04\/image-33-850x331.png 850w, https:\/\/cdn.shortpixel.ai\/stsp\/to_webp,q_lossy,ret_img\/https:\/\/cleiversouza.tech\/wp-content\/uploads\/2024\/04\/image-33.png 1296w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<p>2 &#8211; Logo em seguida clique no bot\u00e3o &#8220;<strong>Create a trail<\/strong>&#8221; para iniciarmos as configura\u00e7\u00f5es de uma nova trilha de logs. Uma trilha do CloudTrail \u00e9 um conjunto de configura\u00e7\u00f5es para registrar e armazenar eventos de APIs da AWS. Voc\u00ea pode criar trilhas para regi\u00f5es espec\u00edficas da AWS e direcionar os logs das atividades para um Bucket S3, CloudWatch Logs ou ambos:<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img decoding=\"async\" width=\"1024\" height=\"430\" src=\"https:\/\/cleiversouza.tech\/wp-content\/uploads\/2024\/04\/image-34-1024x430.png\" alt=\"\" class=\"wp-image-294\" srcset=\"https:\/\/cdn.shortpixel.ai\/stsp\/to_webp,q_lossy,ret_img\/https:\/\/cleiversouza.tech\/wp-content\/uploads\/2024\/04\/image-34-1024x430.png 1024w, https:\/\/cdn.shortpixel.ai\/stsp\/to_webp,q_lossy,ret_img\/https:\/\/cleiversouza.tech\/wp-content\/uploads\/2024\/04\/image-34-300x126.png 300w, https:\/\/cdn.shortpixel.ai\/stsp\/to_webp,q_lossy,ret_img\/https:\/\/cleiversouza.tech\/wp-content\/uploads\/2024\/04\/image-34-768x323.png 768w, https:\/\/cdn.shortpixel.ai\/stsp\/to_webp,q_lossy,ret_img\/https:\/\/cleiversouza.tech\/wp-content\/uploads\/2024\/04\/image-34-1536x646.png 1536w, https:\/\/cdn.shortpixel.ai\/stsp\/to_webp,q_lossy,ret_img\/https:\/\/cleiversouza.tech\/wp-content\/uploads\/2024\/04\/image-34-850x357.png 850w, https:\/\/cdn.shortpixel.ai\/stsp\/to_webp,q_lossy,ret_img\/https:\/\/cleiversouza.tech\/wp-content\/uploads\/2024\/04\/image-34.png 1706w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<p>3 &#8211; Precisamos dar um nome ao Trail e logo em seguida vamos marcar a op\u00e7\u00e3o de criar um novo bucket S3 para armazenar os logs da nossa trilha de auditoria e em seguida vamos dar um nome para este bucket, este nome deve ser \u00fanico em toda AWS, seja criativo no nome =)<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img decoding=\"async\" width=\"1024\" height=\"513\" src=\"https:\/\/cleiversouza.tech\/wp-content\/uploads\/2024\/04\/image-35-1024x513.png\" alt=\"\" class=\"wp-image-295\" srcset=\"https:\/\/cdn.shortpixel.ai\/stsp\/to_webp,q_lossy,ret_img\/https:\/\/cleiversouza.tech\/wp-content\/uploads\/2024\/04\/image-35-1024x513.png 1024w, https:\/\/cdn.shortpixel.ai\/stsp\/to_webp,q_lossy,ret_img\/https:\/\/cleiversouza.tech\/wp-content\/uploads\/2024\/04\/image-35-300x150.png 300w, https:\/\/cdn.shortpixel.ai\/stsp\/to_webp,q_lossy,ret_img\/https:\/\/cleiversouza.tech\/wp-content\/uploads\/2024\/04\/image-35-768x385.png 768w, https:\/\/cdn.shortpixel.ai\/stsp\/to_webp,q_lossy,ret_img\/https:\/\/cleiversouza.tech\/wp-content\/uploads\/2024\/04\/image-35-850x426.png 850w, https:\/\/cdn.shortpixel.ai\/stsp\/to_webp,q_lossy,ret_img\/https:\/\/cleiversouza.tech\/wp-content\/uploads\/2024\/04\/image-35.png 1380w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<p>4 &#8211; O pr\u00f3ximo passo \u00e9 configurar o recurso de criptografia dos logs e vamos precisar criar uma chave KMS (AWS Key Management Service) e o restante iremos deixar conforme a imagem:<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"1012\" height=\"551\" src=\"https:\/\/cleiversouza.tech\/wp-content\/uploads\/2024\/04\/image-36.png\" alt=\"\" class=\"wp-image-296\" srcset=\"https:\/\/cdn.shortpixel.ai\/stsp\/to_webp,q_lossy,ret_img\/https:\/\/cleiversouza.tech\/wp-content\/uploads\/2024\/04\/image-36.png 1012w, https:\/\/cdn.shortpixel.ai\/stsp\/to_webp,q_lossy,ret_img\/https:\/\/cleiversouza.tech\/wp-content\/uploads\/2024\/04\/image-36-300x163.png 300w, https:\/\/cdn.shortpixel.ai\/stsp\/to_webp,q_lossy,ret_img\/https:\/\/cleiversouza.tech\/wp-content\/uploads\/2024\/04\/image-36-768x418.png 768w, https:\/\/cdn.shortpixel.ai\/stsp\/to_webp,q_lossy,ret_img\/https:\/\/cleiversouza.tech\/wp-content\/uploads\/2024\/04\/image-36-850x463.png 850w\" sizes=\"(max-width: 1012px) 100vw, 1012px\" \/><\/figure>\n\n\n\n<p>5 &#8211; Na parte de CloudWatch Logs e Tags, iremos deixar conforme o padr\u00e3o:<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"1018\" height=\"711\" src=\"https:\/\/cleiversouza.tech\/wp-content\/uploads\/2024\/04\/image-37.png\" alt=\"\" class=\"wp-image-297\" srcset=\"https:\/\/cdn.shortpixel.ai\/stsp\/to_webp,q_lossy,ret_img\/https:\/\/cleiversouza.tech\/wp-content\/uploads\/2024\/04\/image-37.png 1018w, https:\/\/cdn.shortpixel.ai\/stsp\/to_webp,q_lossy,ret_img\/https:\/\/cleiversouza.tech\/wp-content\/uploads\/2024\/04\/image-37-300x210.png 300w, https:\/\/cdn.shortpixel.ai\/stsp\/to_webp,q_lossy,ret_img\/https:\/\/cleiversouza.tech\/wp-content\/uploads\/2024\/04\/image-37-768x536.png 768w, https:\/\/cdn.shortpixel.ai\/stsp\/to_webp,q_lossy,ret_img\/https:\/\/cleiversouza.tech\/wp-content\/uploads\/2024\/04\/image-37-850x594.png 850w\" sizes=\"(max-width: 1018px) 100vw, 1018px\" \/><\/figure>\n\n\n\n<p>6 &#8211; Deixe marcado o padr\u00e3o para capturar os eventos executados nos recursos da nossa conta e na sess\u00e3o &#8220;<strong>API activity<\/strong>&#8221; iremos marcar leitura e escrita, dessa forma o CloudTrail ir\u00e1 registrar todas as atividade de leitura e escrita nas APIs. Clique em &#8220;<strong>Next<\/strong>&#8220;:<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"1010\" height=\"435\" src=\"https:\/\/cleiversouza.tech\/wp-content\/uploads\/2024\/04\/image-40.png\" alt=\"\" class=\"wp-image-300\" srcset=\"https:\/\/cdn.shortpixel.ai\/stsp\/to_webp,q_lossy,ret_img\/https:\/\/cleiversouza.tech\/wp-content\/uploads\/2024\/04\/image-40.png 1010w, https:\/\/cdn.shortpixel.ai\/stsp\/to_webp,q_lossy,ret_img\/https:\/\/cleiversouza.tech\/wp-content\/uploads\/2024\/04\/image-40-300x129.png 300w, https:\/\/cdn.shortpixel.ai\/stsp\/to_webp,q_lossy,ret_img\/https:\/\/cleiversouza.tech\/wp-content\/uploads\/2024\/04\/image-40-768x331.png 768w, https:\/\/cdn.shortpixel.ai\/stsp\/to_webp,q_lossy,ret_img\/https:\/\/cleiversouza.tech\/wp-content\/uploads\/2024\/04\/image-40-850x366.png 850w\" sizes=\"(max-width: 1010px) 100vw, 1010px\" \/><\/figure>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"1012\" height=\"549\" src=\"https:\/\/cleiversouza.tech\/wp-content\/uploads\/2024\/04\/image-41.png\" alt=\"\" class=\"wp-image-301\" srcset=\"https:\/\/cdn.shortpixel.ai\/stsp\/to_webp,q_lossy,ret_img\/https:\/\/cleiversouza.tech\/wp-content\/uploads\/2024\/04\/image-41.png 1012w, https:\/\/cdn.shortpixel.ai\/stsp\/to_webp,q_lossy,ret_img\/https:\/\/cleiversouza.tech\/wp-content\/uploads\/2024\/04\/image-41-300x163.png 300w, https:\/\/cdn.shortpixel.ai\/stsp\/to_webp,q_lossy,ret_img\/https:\/\/cleiversouza.tech\/wp-content\/uploads\/2024\/04\/image-41-768x417.png 768w, https:\/\/cdn.shortpixel.ai\/stsp\/to_webp,q_lossy,ret_img\/https:\/\/cleiversouza.tech\/wp-content\/uploads\/2024\/04\/image-41-850x461.png 850w\" sizes=\"(max-width: 1012px) 100vw, 1012px\" \/><\/figure>\n\n\n\n<p>7 &#8211; Por \u00faltimo, revise as configura\u00e7\u00f5es e finalmente clique em &#8220;<strong>Create trail<\/strong>&#8220;:<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"1016\" height=\"560\" src=\"https:\/\/cleiversouza.tech\/wp-content\/uploads\/2024\/04\/image-42.png\" alt=\"\" class=\"wp-image-302\" srcset=\"https:\/\/cdn.shortpixel.ai\/stsp\/to_webp,q_lossy,ret_img\/https:\/\/cleiversouza.tech\/wp-content\/uploads\/2024\/04\/image-42.png 1016w, https:\/\/cdn.shortpixel.ai\/stsp\/to_webp,q_lossy,ret_img\/https:\/\/cleiversouza.tech\/wp-content\/uploads\/2024\/04\/image-42-300x165.png 300w, https:\/\/cdn.shortpixel.ai\/stsp\/to_webp,q_lossy,ret_img\/https:\/\/cleiversouza.tech\/wp-content\/uploads\/2024\/04\/image-42-768x423.png 768w, https:\/\/cdn.shortpixel.ai\/stsp\/to_webp,q_lossy,ret_img\/https:\/\/cleiversouza.tech\/wp-content\/uploads\/2024\/04\/image-42-850x469.png 850w\" sizes=\"(max-width: 1016px) 100vw, 1016px\" \/><\/figure>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"1014\" height=\"455\" src=\"https:\/\/cleiversouza.tech\/wp-content\/uploads\/2024\/04\/image-43.png\" alt=\"\" class=\"wp-image-303\" srcset=\"https:\/\/cdn.shortpixel.ai\/stsp\/to_webp,q_lossy,ret_img\/https:\/\/cleiversouza.tech\/wp-content\/uploads\/2024\/04\/image-43.png 1014w, https:\/\/cdn.shortpixel.ai\/stsp\/to_webp,q_lossy,ret_img\/https:\/\/cleiversouza.tech\/wp-content\/uploads\/2024\/04\/image-43-300x135.png 300w, https:\/\/cdn.shortpixel.ai\/stsp\/to_webp,q_lossy,ret_img\/https:\/\/cleiversouza.tech\/wp-content\/uploads\/2024\/04\/image-43-768x345.png 768w, https:\/\/cdn.shortpixel.ai\/stsp\/to_webp,q_lossy,ret_img\/https:\/\/cleiversouza.tech\/wp-content\/uploads\/2024\/04\/image-43-850x381.png 850w\" sizes=\"(max-width: 1014px) 100vw, 1014px\" \/><\/figure>\n\n\n\n<p>8 &#8211; Pronto! Nosso trail chamado cleiversouza-trail est\u00e1 configurado e com Status de <strong>Logging<\/strong>, o que indica que est\u00e1 registrando os logs dos eventos conforme configuramos anteriormente:<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"236\" src=\"https:\/\/cleiversouza.tech\/wp-content\/uploads\/2024\/04\/image-44-1024x236.png\" alt=\"\" class=\"wp-image-304\" srcset=\"https:\/\/cdn.shortpixel.ai\/stsp\/to_webp,q_lossy,ret_img\/https:\/\/cleiversouza.tech\/wp-content\/uploads\/2024\/04\/image-44-1024x236.png 1024w, https:\/\/cdn.shortpixel.ai\/stsp\/to_webp,q_lossy,ret_img\/https:\/\/cleiversouza.tech\/wp-content\/uploads\/2024\/04\/image-44-300x69.png 300w, https:\/\/cdn.shortpixel.ai\/stsp\/to_webp,q_lossy,ret_img\/https:\/\/cleiversouza.tech\/wp-content\/uploads\/2024\/04\/image-44-768x177.png 768w, https:\/\/cdn.shortpixel.ai\/stsp\/to_webp,q_lossy,ret_img\/https:\/\/cleiversouza.tech\/wp-content\/uploads\/2024\/04\/image-44-1536x354.png 1536w, https:\/\/cdn.shortpixel.ai\/stsp\/to_webp,q_lossy,ret_img\/https:\/\/cleiversouza.tech\/wp-content\/uploads\/2024\/04\/image-44-850x196.png 850w, https:\/\/cdn.shortpixel.ai\/stsp\/to_webp,q_lossy,ret_img\/https:\/\/cleiversouza.tech\/wp-content\/uploads\/2024\/04\/image-44.png 1709w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<p><strong>Conclus\u00e3o<\/strong><\/p>\n\n\n\n<p><\/p>\n\n\n\n<p>O AWS CloudTrail \u00e9 crucial para garantir a seguran\u00e7a, conformidade e efici\u00eancia na AWS, registrando e monitorando todas as atividades de uma ou mais contas. Isso oferece transpar\u00eancia, permitindo respostas r\u00e1pidas a incidentes, auditorias eficazes e otimiza\u00e7\u00e3o de recursos. Integrado com outros servi\u00e7os AWS e ferramentas externas, desempenha um papel fundamental na constru\u00e7\u00e3o de uma infraestrutura confi\u00e1vel e resiliente.<\/p>\n\n\n\n<p><\/p>\n<div class=\"cleiv-depois-do-conteudo\" style=\"margin-bottom: 1px; \" id=\"cleiv-217632541\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-6867149460605391\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:inline-block;width:0px;height:0px;\" \ndata-ad-client=\"ca-pub-6867149460605391\" \ndata-ad-slot=\"6798117061\"><\/ins> \n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div>","protected":false},"excerpt":{"rendered":"<p>Antes de partirmos para a configura\u00e7\u00e3o, vamos falar um pouco sobre este servi\u00e7o t\u00e3o importante&#8230;.<\/p>\n","protected":false},"author":1,"featured_media":160,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_monsterinsights_skip_tracking":false,"_monsterinsights_sitenote_active":false,"_monsterinsights_sitenote_note":"","_monsterinsights_sitenote_category":0,"_uf_show_specific_survey":0,"_uf_disable_surveys":false,"footnotes":""},"categories":[49],"tags":[53,50,52,51],"aioseo_notices":[],"_links":{"self":[{"href":"https:\/\/cleiversouza.tech\/index.php\/wp-json\/wp\/v2\/posts\/292"}],"collection":[{"href":"https:\/\/cleiversouza.tech\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/cleiversouza.tech\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/cleiversouza.tech\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/cleiversouza.tech\/index.php\/wp-json\/wp\/v2\/comments?post=292"}],"version-history":[{"count":7,"href":"https:\/\/cleiversouza.tech\/index.php\/wp-json\/wp\/v2\/posts\/292\/revisions"}],"predecessor-version":[{"id":421,"href":"https:\/\/cleiversouza.tech\/index.php\/wp-json\/wp\/v2\/posts\/292\/revisions\/421"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/cleiversouza.tech\/index.php\/wp-json\/wp\/v2\/media\/160"}],"wp:attachment":[{"href":"https:\/\/cleiversouza.tech\/index.php\/wp-json\/wp\/v2\/media?parent=292"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/cleiversouza.tech\/index.php\/wp-json\/wp\/v2\/categories?post=292"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/cleiversouza.tech\/index.php\/wp-json\/wp\/v2\/tags?post=292"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}