More Info:

User activity logging should be enabled for your Amazon Redshift clusters for troubleshooting purposes.

Risk Level

Low

Address

Security

Compliance Standards

GDPR

Triage and Remediation

Remediation

To remediate the misconfiguration of Redshift User Activity Logging not being enabled in AWS, you can follow these steps using the AWS Management Console:

  1. Login to AWS Console: Go to the AWS Management Console (https://console.aws.amazon.com/) and login to your account.

  2. Navigate to Amazon Redshift: In the AWS Management Console, navigate to the Amazon Redshift service by either searching for Redshift in the search bar or locating it under the “Analytics” section.

  3. Select your Redshift Cluster: From the list of Redshift clusters, select the cluster for which you want to enable User Activity Logging.

  4. Modify Cluster: Click on the cluster ID to open the details of the cluster. In the cluster details page, click on the “Modify” button at the top.

  5. Enable User Activity Logging: Scroll down to the “Database configurations” section in the Modify Cluster page. Look for the “User Activity Logging” option and set it to “Enabled”.

  6. Review and Apply Changes: Review the other configurations to ensure they are as per your requirements. Once you have enabled User Activity Logging, click on the “Modify cluster” button at the bottom.

  7. Monitor the Modification: The modification process will start, and you can monitor the progress in the Clusters dashboard. It may take a few minutes for the changes to be applied.

  8. Verify User Activity Logging: Once the modification is complete, you can verify that User Activity Logging is enabled for your Redshift cluster by checking the cluster details or by accessing the logs as needed.

By following these steps, you should be able to remediate the misconfiguration of Redshift User Activity Logging not being enabled in AWS Redshift using the AWS Management Console.

Additional Reading: