Create a service trail.
Operation description
The ActionTrail Data Delivery feature requires Security Center to read ActionTrail data for cloud security posture management and security alerting. You must enable the ActionTrail Data Delivery switch in the Security Center console and authorize the service-linked role (AliyunServiceRoleForSas) for Security Center before ActionTrail data can be delivered to the Security Center LogStore. For more information about the AliyunServiceRoleForSas service-linked role of Security Center, see Service-linked role for Security Center.
Prerequisites
Before you call this operation, make sure that the ActionTrail Data Delivery switch is turned on. For more information, see Access control.
Try it now
Test
RAM authorization
|
Action |
Access level |
Resource type |
Condition key |
Dependent action |
|
yundun-sas:CreateServiceTrail |
create |
*SasTrail
|
None | None |
Request parameters
|
Parameter |
Type |
Required |
Description |
Example |
| RegionId |
string |
No |
The region ID of the instance. Valid values:
|
cn-hangzhou |
Response elements
|
Element |
Type |
Description |
Example |
|
object |
|||
| RequestId |
string |
The ID of the request, which is used to locate and troubleshoot issues. |
A4EB8B1C-1DEC-5E18-BCD0-D1BBB3936FA7 |
Examples
Success response
JSON format
{
"RequestId": "A4EB8B1C-1DEC-5E18-BCD0-D1BBB3936FA7"
}
Error codes
|
HTTP status code |
Error code |
Error message |
Description |
|---|---|---|---|
| 400 | NoPermission | no permission | |
| 400 | ServiceRoleNotEnabled | Service role not enabled. | specified slr not enabled error |
| 500 | ServerError | ServerError | |
| 403 | NoPermission | caller has no permission | You are not authorized to do this operation. |
See Error Codes for a complete list.
Release notes
See Release Notes for a complete list.