A coworker of mine was applying some policy changes to S3, and something went wrong. When he wanted to look at what happened, specifically the logs for S3 in splunk, he noticed that they weren't there.
Doesn't Cloudtrail store policy actions like that? If so, doesn't Splunk do it's magic with them?
... View more