AWS::CloudTrail::EventDataStore AdvancedEventSelector

Advanced event selectors let you create fine-grained selectors for the following AWS CloudTrail event record fields. They help you control costs by logging only those events that are important to you. For more information about advanced event selectors, see Logging data events in the AWS CloudTrail User Guide.

  • readOnly

  • eventSource

  • eventName

  • eventCategory

  • resources.type

  • resources.ARN

You cannot apply both event selectors and advanced event selectors to a trail.

Syntax

To declare this entity in your AWS CloudFormation template, use the following syntax:

JSON

{ "FieldSelectors" : [ AdvancedFieldSelector, ... ], "Name" : String }

Properties

FieldSelectors

Contains all selector statements in an advanced event selector.

Required: Yes

Type: List of AdvancedFieldSelector

Update requires: No interruption

Name

An optional, descriptive name for an advanced event selector, such as "Log data events for only two S3 buckets".

Required: No

Type: String

Minimum: 0

Maximum: 1000

Pattern: .*

Update requires: No interruption