Test the Cloud Detections for AWS CloudTrail integration in your AWS cloud environment.
Cloud Detections for AWS CloudTrail integration allows Trend Vision One to access and monitor your AWS CloudTrail logs and automate response actions to detected
threats. The following steps provide a guide on how to test the feature within your
environment.
Procedure
- Sign in to the AWS account you want to use to test Cloud Detections for AWS CloudTrail.
- Use XDR Data Explorer to verify CloudTrail log data is being sent to Trend Vision One.
- Use one of the following demo models to trigger a Workbench alert.

Important
Make sure to use an IAM user in AWS when using a demo model to enable testing the Revoke Access Permission response task. - Test response capabilities with the Revoke Access Permission task.
