Home › Forums › AWS › AWS Certified Security – Specialty › Cloud Trail and "Write-Only" setting › Reply To: Cloud Trail and "Write-Only" setting
-
Interesting & key point here is the READ or WRITE is not referring to the iam access key READ or WRITE but to the actions being done with the iam access key. I initially read it as READ or WRITE operations specifically referring to the iam access key itself, which in this scenario is ‘iam key usage’ which is a READ ONLY operation and hence did not chose this option. I am also seeing that for Cloudtrail to send events to eventbridge, it needs to be a write-only OR ALL setting for the active cloudtrail