المراقبة المدفوعة بالأحداث باستخدام CloudTrail
تتبّع نشاط المستخدم واستدعاءات API عبر حساب AWS، ما يتيح تحليل الأمان وتتبع تغييرات الموارد والتدقيق على الامتثال.
المراقبة المدفوعة بالأحداث باستخدام CloudTrail درس مجاني في AWS for Backend Developers (EC2, S3, RDS, Lambda) على CoddyKit. هذا هو الدرس 3 من أصل 4. يمكنك قراءة الدرس كاملاً أدناه مجاناً — ثم تمرن عليه مباشرة في المتصفح باستخدام محرر أكواد مدمج ومدرس ذكاء اصطناعي متاح 24/7. هذا الدرس جزء من مسار التعلم في AWS for Backend Developers (EC2, S3, RDS, Lambda)، وتقدمك يتزامن عبر الويب وتطبيق CoddyKit. تتضمن دورة AWS for Backend Developers (EC2, S3, RDS, Lambda) 4 دروس في المجموع.
بعض أجزاء هذا الدرس لم تُترجم بعد وتظهر باللغة الإنجليزية.
What is AWS CloudTrail?
Welcome to the lesson on AWS CloudTrail! This service is crucial for auditing, governance, and compliance within your AWS account.
Think of CloudTrail as a security camera for your AWS environment. It continuously monitors and records account activity.
Why Use CloudTrail?
CloudTrail captures a comprehensive history of events, including API calls, made by users, roles, or AWS services.
- Security Analysis: Detect unusual activity or unauthorized access.
- Compliance Auditing: Prove adherence to regulatory requirements.
- Troubleshooting: Pinpoint who made what change and when.
- Resource Change Tracking: Understand changes to your AWS resources.
How CloudTrail Works
CloudTrail logs events as JSON records. These records provide details like:
- Who made the request (user or role)
- What action was performed (e.g.,
RunInstances,PutObject) - When the action occurred
- From which IP address
- Which AWS service was involved
Event Types: Management Events
CloudTrail categorizes events into two main types. Management events capture control plane operations on your AWS resources.
- Creating or deleting an EC2 instance.
- Configuring security groups.
- Updating an S3 bucket policy.
These events provide insight into management operations.
Event Types: Data Events
Data events log resource operations performed on or within a resource, which are often high-volume activities.
Examples include:
- S3 object-level API activity (
GetObject,PutObject,DeleteObject). - Lambda function invoke activities.
Data events can generate a lot of data and are optional to log.
CloudTrail Event History
Every AWS account automatically has Event History enabled, which provides a view of the past 90 days of management events in the CloudTrail console.
This is a quick way to search, view, and download recent activity without setting up a dedicated trail.
Creating a CloudTrail Trail
For long-term storage, advanced filtering, and integration with other services, you create a CloudTrail trail.
A trail is a configuration that enables CloudTrail to deliver log files to an Amazon S3 bucket you specify. You can create one trail that applies to all regions or specific regions.
Storing Logs in S3
When you create a trail, CloudTrail delivers log files to your chosen S3 bucket. These log files are encrypted and organized by region and date.
Storing logs in S3 provides durable, low-cost storage, which is ideal for compliance and long-term auditing requirements.
Integrating with CloudWatch Logs
For real-time monitoring and alerting, CloudTrail can be configured to send events to Amazon CloudWatch Logs.
This integration allows you to:
- Create alarms based on specific API calls.
- Build dashboards to visualize activity patterns.
- Centralize logs from multiple AWS services.
CloudTrail Key Concepts
Which of the following are key benefits of using AWS CloudTrail?
CloudTrail: Your Audit Log
You've learned that AWS CloudTrail is essential for maintaining security, achieving compliance, and performing operational troubleshooting within your AWS account.
By logging management and data events to S3 and integrating with CloudWatch Logs, you gain deep visibility into all activities, ensuring you know who did what, when, and where.
الأسئلة الشائعة
هل درس «المراقبة المدفوعة بالأحداث باستخدام CloudTrail» مجاني؟
نعم — نص درس «المراقبة المدفوعة بالأحداث باستخدام CloudTrail» كامل متاح مجاناً هنا على الويب. لتمرينه بشكل تفاعلي (محرر أكواد مدمج ومدرس ذكاء اصطناعي متاح 24/7) وفتح باقي دورة AWS for Backend Developers (EC2, S3, RDS, Lambda)، انتقل إلى CoddyKit PRO. تتضمن دورة AWS for Backend Developers (EC2, S3, RDS, Lambda) 4 دروس في المجموع.
ماذا ستتعلم في «المراقبة المدفوعة بالأحداث باستخدام CloudTrail»؟
تتبّع نشاط المستخدم واستدعاءات API عبر حساب AWS، ما يتيح تحليل الأمان وتتبع تغييرات الموارد والتدقيق على الامتثال. تتمرن على AWS for Backend Developers (EC2, S3, RDS, Lambda) مع أكواد عملية تشغلها مباشرة في المتصفح، ومدرس ذكاء اصطناعي متاح 24/7 يجيب على أسئلتك أثناء عملك.
هل أحتاج إلى خبرة سابقة لأبدأ AWS for Backend Developers (EC2, S3, RDS, Lambda)؟
لا تُشترط خبرة سابقة. AWS for Backend Developers (EC2, S3, RDS, Lambda) على CoddyKit منظم للمبتدئين حتى المتقدمين، لذا يمكنك البدء من هنا أو من البداية والتقدم بسرعتك الخاصة. هذا هو الدرس 3 من أصل 4.
كم من الوقت يستغرق درس «المراقبة المدفوعة بالأحداث باستخدام CloudTrail»؟
معظم دروس CoddyKit تستغرق حوالي 5–10 دقائق. كل منها موجز وتفاعلي، لذا تحرز تقدماً مستمراً وتستأنف من حيث توقفت عبر الويب والتطبيق.
هل يمكنني كتابة وتشغيل أكواد في درس AWS for Backend Developers (EC2, S3, RDS, Lambda) هذا؟
نعم. كل درس في AWS for Backend Developers (EC2, S3, RDS, Lambda) يتضمن محرر أكواد مدمج، لذا تكتب وتشغل أكواداً حقيقية مباشرة في متصفحك وتحصل على تعليقات فورية من الذكاء الاصطناعي — بدون إعداد محلي.
جميع الدروس في هذه الدورة
- مقاييس CloudWatch وتنبيهاته
- سجلات CloudWatch ومجموعات السجلات
- المراقبة المدفوعة بالأحداث باستخدام CloudTrail
- بناء لوحات معلومات CloudWatch