Skip to content

EKS Audit Log Collected by Security Lake Not Loaded  #459

@yusukex2

Description

@yusukex2

Is EKS audit log collected by Security Lake supported atm?
https://aws.amazon.com/about-aws/whats-new/2024/02/amazon-security-lake-audit-logs-eks/

I am trying to load EKS audit log from Security Lake S3 bucket to OpenSearch.
es-loader gets invoked. However, the log is not loaded to OpenSearch with the following messages.

/var/task/aws_lambda_powertools/metrics/provider/base.py:208: UserWarning: No application metrics to publish. The cold-start metric may be published if enabled. If application metrics should never be empty, consider using 'raise_on_empty_metrics'

self.flush_metrics(raise_on_empty_metrics=raise_on_empty_metrics)

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions