AWS Athena CloudTrail のデータを検索するSQLサンプル

環境
AWS Athena

操作例
1.s3イベントを対象にする と 出力件数を15件にする
SQL構文

Plain text
Copy to clipboard
Open code in new window
EnlighterJS 3 Syntax Highlighter
where eventsource = 's3.amazonaws.com'
limit 15;
where eventsource = 's3.amazonaws.com' limit 15;
where eventsource = 's3.amazonaws.com'
limit 15;

2.対象のS3のバケットを指定する
バケット名:data-2023-bucket
SQL構文

Plain text
Copy to clipboard
Open code in new window
EnlighterJS 3 Syntax Highlighter
and requestparameters LIKE '%data-2023-bucket%'
and requestparameters LIKE '%data-2023-bucket%'
and requestparameters LIKE '%data-2023-bucket%'

3.日時で対象を絞る+eventTime の降順にする
SQL構文

Plain text
Copy to clipboard
Open code in new window
EnlighterJS 3 Syntax Highlighter
where eventTime >= '2023-11-07 00:00:00' and eventTime < '2023-11-19 00:00:00'
order by eventTime desc
where eventTime >= '2023-11-07 00:00:00' and eventTime < '2023-11-19 00:00:00' order by eventTime desc
where eventTime >= '2023-11-07 00:00:00' and eventTime < '2023-11-19 00:00:00'
order by eventTime desc

 

AWS

Posted by arkgame