Hello,
I am working on SecOps (Chronicle), tool in GCP, in SecOps I want to integrate AWS S3 logs bucket (AWS CloudTrail configuration). To configure feed I have provided following details :
1. Feed Name, 2. Access Key, 3. Access Key ID, 4 CIEM : True (lable). 5. S3 Bucket URL, 6. S3 bucket region
In AWS I have created user for the same who has access to read all the bucket data as well as kms: decrypt permissions.
But still I am getting the error of "INTERNAL_ERROR: Unable to process the feed due to an internal error., Click on View feed to know more."
Please reply.
Thank you