Amazon CloudWatch now automatically enables log collection for Amazon CloudFront Standard access logs, AWS Security Hub CSPM finding logs, and Amazon Bedrock AgentCore memory and gateway logs. Enablement rules can be scoped to organizations, specific accounts, or tagged resources, allowing teams to standardize telemetry collection without manual setup. CloudFront and Security Hub support org-wide rules, while Bedrock AgentCore supports account-level rules. The feature is available in all AWS commercial regions.
Sort: