setting-up-cloudtrail-multi-region

Community

Centralize CloudTrail logs across all regions

Authormreferre
Version1.0.0
Installs0

System Documentation

What problem does it solve?

AWS API activity logging often ends up fragmented by region, making it harder to detect security events and complete compliance auditing consistently across your entire environment.

Core Features & Use Cases

  • Multi-region CloudTrail setup: Creates an organization-style trail that captures management (and optional data) events across all AWS regions into a centralized S3 bucket.
  • S3 + CloudWatch Logs integration: Delivers CloudTrail logs to CloudWatch Logs to enable near-real-time monitoring and queryable security telemetry.
  • CloudWatch Logs Insights queries: Provides a set of starter queries to investigate failed calls, root activity, deletions, and policy/resource changes for operational analysis and audit reporting.
  • Security hardening: Includes IAM role creation for CloudWatch delivery, KMS encryption option, least-privilege guidance, and troubleshooting for common delivery delays and opt-in regions.

Quick Start

Ask your AI assistant to generate a complete step-by-step CloudTrail multi-region setup using your trail name, globally unique S3 bucket name, and the primary region where CloudWatch resources should be created.

Dependency Matrix

Required Modules

None required

Components

references

💻 Claude Code Installation

Recommended: Let Claude install automatically. Simply copy and paste the text below to Claude Code.

Please help me install this Skill:
Name: setting-up-cloudtrail-multi-region
Download link: https://github.com/mreferre/aws-agent-toolkit-skills/archive/main.zip#setting-up-cloudtrail-multi-region

Please download this .zip file, extract it, and install it in the .claude/skills/ directory.
View Source Repository

Agent Skills Search Helper

Install a tiny helper to your Agent, search and equip skill from 471,000+ vetted skills library on demand.