<?xml version='1.0' encoding='UTF-8'?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://blog.cetinich.net</id>
  <title>Brent's Blog - Posts tagged cloudtrail</title>
  <updated>2026-03-22T14:39:12.151065+00:00</updated>
  <link href="https://blog.cetinich.net"/>
  <link href="https://blog.cetinich.net/blog/tag/cloudtrail/atom.xml" rel="self"/>
  <generator uri="https://ablog.readthedocs.io/" version="0.11.12">ABlog</generator>
  <entry>
    <id>https://blog.cetinich.net/content/2020/cloudtrail-vpc-endpoint-denied-not-logged/</id>
    <title>CloudTrail and VPC Endpoints Logging</title>
    <updated>2020-01-10T00:00:00+00:00</updated>
    <author>
      <name>Brent Cetinich</name>
    </author>
    <content type="html">&lt;p class="ablog-post-excerpt"&gt;&lt;p&gt;Today I learnt that AWS CloudTrail does not log requests that are denied by VPC
endpoint policy. The reason for this is that it would allow an attacker to
exfiltrate data via CloudTrail.&lt;/p&gt;
&lt;/p&gt;
</content>
    <link href="https://blog.cetinich.net/content/2020/cloudtrail-vpc-endpoint-denied-not-logged/"/>
    <summary>Today I learnt that AWS CloudTrail does not log requests that are denied by VPC
endpoint policy. The reason for this is that it would allow an attacker to
exfiltrate data via CloudTrail.</summary>
    <category term="aws" label="aws"/>
    <category term="cloudtrail" label="cloudtrail"/>
    <category term="s3" label="s3"/>
    <category term="vpcendpoint" label="vpcendpoint"/>
    <published>2020-01-10T00:00:00+00:00</published>
  </entry>
</feed>
