CreateLogSubscription
Creates a subscription to forward real-time Directory Service domain controller security logs to the specified Amazon CloudWatch log group in your AWS account.
Request Syntax
{
"DirectoryId": "string
",
"LogGroupName": "string
"
}
Request Parameters
The request accepts the following data in JSON format.
- DirectoryId
-
Identifier of the directory to which you want to subscribe and receive real-time logs to your specified CloudWatch log group.
Type: String
Pattern:
^d-[0-9a-f]{10}$
Required: Yes
- LogGroupName
-
The name of the CloudWatch log group where the real-time domain controller logs are forwarded.
Type: String
Length Constraints: Minimum length of 1. Maximum length of 512.
Pattern:
[-._/#A-Za-z0-9]+
Required: Yes
Response Elements
If the action is successful, the service sends back an HTTP 200 response with an empty HTTP body.
Errors
For information about the errors that are common to all actions, see Common Errors.
- ClientException
-
A client exception has occurred.
HTTP Status Code: 400
- EntityAlreadyExistsException
-
The specified entity already exists.
HTTP Status Code: 400
- EntityDoesNotExistException
-
The specified entity could not be found.
HTTP Status Code: 400
- InsufficientPermissionsException
-
The account does not have sufficient permission to perform the operation.
HTTP Status Code: 400
- ServiceException
-
An exception has occurred in AWS Directory Service.
HTTP Status Code: 500
- UnsupportedOperationException
-
The operation is not supported.
HTTP Status Code: 400
See Also
For more information about using this API in one of the language-specific AWS SDKs, see the following: