AWS Elastic Beanstalk

eventNameDescriptionSampleRule
anyCatch-all entry for AWS Elastic Beanstalk rules that match the service but not a specific eventName.NN
AbortEnvironmentUpdateCancels in-progress environment configuration update or application version deployment. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
ApplyEnvironmentManagedActionApplies a scheduled managed action immediately. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
AssociateEnvironmentOperationsRoleAdd or change the operations role used by an environment. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
CheckDNSAvailabilityChecks if the specified CNAME is available. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
ComposeEnvironmentsCreate or update a group of environments that each run a separate component of a single application. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
CreateApplicationCreates an application that has one configuration template named default and no application versions. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
CreateApplicationVersionCreates an application version for the specified application. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
CreateConfigurationTemplateCreates an AWS Elastic Beanstalk configuration template, associated with a specific Elastic Beanstalk application. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
CreateEnvironmentLaunches an AWS Elastic Beanstalk environment for the specified application using the specified configuration. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
CreatePlatformVersionCreate a new version of your custom platform. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
CreateStorageLocationCreates a bucket in Amazon S3 to store application versions, logs, and other files used by Elastic Beanstalk environments. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
DeleteApplicationDeletes the specified application along with all associated versions and configurations. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
DeleteApplicationVersionDeletes the specified version from the specified application. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
DeleteConfigurationTemplateDeletes the specified configuration template. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
DeleteEnvironmentConfigurationDeletes the draft configuration associated with the running environment. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
DeletePlatformVersionDeletes the specified version of a custom platform. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
DescribeAccountAttributesReturns attributes related to AWS Elastic Beanstalk that are associated with the calling AWS account. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
DescribeApplicationsReturns the descriptions of existing applications. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
DescribeApplicationVersionsRetrieve a list of application versions. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
DescribeConfigurationOptionsDescribes the configuration options that are used in a particular configuration template or environment, or that a specified solution stack defines. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
DescribeConfigurationSettingsReturns a description of the settings for the specified configuration set, that is, either a configuration template or the configuration set associated with a running environment. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
DescribeEnvironmentHealthReturns information about the overall health of the specified environment. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
DescribeEnvironmentManagedActionHistoryLists an environment's completed and failed managed actions. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
DescribeEnvironmentManagedActionsLists an environment's upcoming and in-progress managed actions. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
DescribeEnvironmentResourcesReturns AWS resources for this environment. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
DescribeEnvironmentsReturns descriptions for existing environments.YN
DescribeEventsReturns list of event descriptions matching criteria up to the last 6 weeks. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
DescribeInstancesHealthRetrieves detailed information about the health of instances in your AWS Elastic Beanstalk. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
DescribePlatformVersionDescribes a platform version. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
DisassociateEnvironmentOperationsRoleDisassociate the operations role from an environment. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
ListAvailableSolutionStacksReturns a list of the available solution stack names, with the public version first and then in reverse chronological order. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
ListPlatformBranchesLists the platform branches available for your account in an AWS Region. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
ListPlatformVersionsLists the platform versions available for your account in an AWS Region. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
ListTagsForResourceReturn the tags applied to an AWS Elastic Beanstalk resource. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
RebuildEnvironmentDeletes and recreates all of the AWS resources (for example: the Auto Scaling group, load balancer, etc.) for a specified environment and forces a restart. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
RequestEnvironmentInfoInitiates a request to compile the specified type of information of the deployed environment. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
RestartAppServerCauses the environment to restart the application container server running on each Amazon EC2 instance. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
RetrieveEnvironmentInfoRetrieves the compiled information from a RequestEnvironmentInfo request. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
SwapEnvironmentCNAMEsSwaps the CNAMEs of two environments. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
TerminateEnvironmentTerminates the specified environment. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
UpdateApplicationUpdates the specified application to have the specified properties. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
UpdateApplicationResourceLifecycleModifies lifecycle settings for an application. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
UpdateApplicationVersionUpdates the specified application version to have the specified properties. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
UpdateConfigurationTemplateUpdates the specified configuration template to have the specified properties or configuration option values. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
UpdateEnvironmentUpdates the environment description, deploys a new application version, updates the configuration settings to an entirely new configuration template, or updates select configuration option values in the running environment. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
UpdateTagsForResourceUpdate the list of tags applied to an AWS Elastic Beanstalk resource. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
ValidateConfigurationSettingsTakes a set of configuration settings and either a configuration template or environment, and determines whether those values are valid. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN

any: AWS Elastic Beanstalk (catch-all)

#
Service
elasticbeanstalk

Description

Catch-all entry for AWS Elastic Beanstalk rules that match the service but not a specific eventName.

AbortEnvironmentUpdate

#
Service
elasticbeanstalk

Description

Cancels in-progress environment configuration update or application version deployment. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

ApplyEnvironmentManagedAction

#
Service
elasticbeanstalk

Description

Applies a scheduled managed action immediately. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

AssociateEnvironmentOperationsRole

#
Service
elasticbeanstalk

Description

Add or change the operations role used by an environment. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

CheckDNSAvailability

#
Service
elasticbeanstalk

Description

Checks if the specified CNAME is available. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

ComposeEnvironments

#
Service
elasticbeanstalk

Description

Create or update a group of environments that each run a separate component of a single application. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

CreateApplication

#
Service
elasticbeanstalk

Description

Creates an application that has one configuration template named default and no application versions. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

CreateApplicationVersion

#
Service
elasticbeanstalk

Description

Creates an application version for the specified application. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

CreateConfigurationTemplate

#
Service
elasticbeanstalk

Description

Creates an AWS Elastic Beanstalk configuration template, associated with a specific Elastic Beanstalk application. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

CreateEnvironment

#
Service
elasticbeanstalk

Description

Launches an AWS Elastic Beanstalk environment for the specified application using the specified configuration. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

CreatePlatformVersion

#
Service
elasticbeanstalk

Description

Create a new version of your custom platform. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

CreateStorageLocation

#
Service
elasticbeanstalk

Description

Creates a bucket in Amazon S3 to store application versions, logs, and other files used by Elastic Beanstalk environments. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

DeleteApplication

#
Service
elasticbeanstalk

Description

Deletes the specified application along with all associated versions and configurations. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

DeleteApplicationVersion

#
Service
elasticbeanstalk

Description

Deletes the specified version from the specified application. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

DeleteConfigurationTemplate

#
Service
elasticbeanstalk

Description

Deletes the specified configuration template. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

DeleteEnvironmentConfiguration

#
Service
elasticbeanstalk

Description

Deletes the draft configuration associated with the running environment. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

DeletePlatformVersion

#
Service
elasticbeanstalk

Description

Deletes the specified version of a custom platform. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

DescribeAccountAttributes

#
Service
elasticbeanstalk

Description

Returns attributes related to AWS Elastic Beanstalk that are associated with the calling AWS account. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

DescribeApplications

#
Service
elasticbeanstalk

Description

Returns the descriptions of existing applications. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.08",
  "eventID": "8299c521-48f9-4d09-bcc5-496169cb4468",
  "eventSource": "elasticbeanstalk.amazonaws.com",
  "eventName": "DescribeApplications",
  "awsRegion": "eu-west-2",
  "eventType": "AwsApiCall",
  "readOnly": true,
  "managementEvent": true,
  "requestID": "df9d5e3d-3c4d-4d2d-938a-6f6a3acba01a",
  "userAgent": "aws-sdk-go-v2/1.43.0 ua/2.1 os/linux lang/go#1.26.5 md/GOOS#linux md/GOARCH#arm64 api/elasticbeanstalk#1.29.4 m/E,i",
  "tlsDetails": {
    "tlsVersion": "TLSv1.3",
    "cipherSuite": "TLS_AES_128_GCM_SHA256",
    "clientProvidedHostHeader": "example.eu-west-2.amazonaws.com"
  }
}

DescribeApplicationVersions

#
Service
elasticbeanstalk

Description

Retrieve a list of application versions. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.08",
  "eventID": "52ffc8e3-98a9-41d3-9c50-8d606be871d9",
  "eventSource": "elasticbeanstalk.amazonaws.com",
  "eventName": "DescribeApplicationVersions",
  "awsRegion": "eu-west-1",
  "eventType": "AwsApiCall",
  "readOnly": true,
  "managementEvent": true,
  "requestID": "accda225-878a-4f0d-b38d-648e23bb4c09",
  "userAgent": "Botocore/1.35.95 ua/2.0 os/linux#5.10.245-245.983.amzn2.x86_64 md/arch#x86_64 lang/python#3.9.23 md/pyimpl#CPython cfg/retry-mode#standard",
  "tlsDetails": {
    "tlsVersion": "TLSv1.3",
    "cipherSuite": "TLS_AES_128_GCM_SHA256",
    "clientProvidedHostHeader": "example.eu-west-1.amazonaws.com"
  }
}

DescribeConfigurationOptions

#
Service
elasticbeanstalk

Description

Describes the configuration options that are used in a particular configuration template or environment, or that a specified solution stack defines. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

DescribeConfigurationSettings

#
Service
elasticbeanstalk

Description

Returns a description of the settings for the specified configuration set, that is, either a configuration template or the configuration set associated with a running environment. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.08",
  "eventID": "dd39fad5-1c0f-4b22-8e1e-3080c0cb8fe1",
  "eventSource": "elasticbeanstalk.amazonaws.com",
  "eventName": "DescribeConfigurationSettings",
  "awsRegion": "us-east-1",
  "eventType": "AwsApiCall",
  "readOnly": true,
  "managementEvent": true,
  "requestID": "4b1432dd-78e9-4620-85fa-bd2947784d8f",
  "userAgent": "aws-sdk-go-v2/1.43.0 ua/2.1 os/linux lang/go#1.26.5 md/GOOS#linux md/GOARCH#arm64 api/elasticbeanstalk#1.29.4 m/E,i",
  "tlsDetails": {
    "tlsVersion": "TLSv1.3",
    "cipherSuite": "TLS_AES_128_GCM_SHA256",
    "clientProvidedHostHeader": "example.us-east-1.amazonaws.com"
  }
}

DescribeEnvironmentHealth

#
Service
elasticbeanstalk

Description

Returns information about the overall health of the specified environment. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

DescribeEnvironmentManagedActionHistory

#
Service
elasticbeanstalk

Description

Lists an environment's completed and failed managed actions. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.08",
  "eventID": "94562de0-705d-41b9-9808-6b748ebe6d0c",
  "eventSource": "elasticbeanstalk.amazonaws.com",
  "eventName": "DescribeEnvironmentManagedActionHistory",
  "awsRegion": "us-east-1",
  "eventType": "AwsApiCall",
  "readOnly": true,
  "managementEvent": true,
  "requestID": "b6444daf-1827-4437-9459-b69dbee76e2f",
  "userAgent": "Botocore/1.35.95 ua/2.0 os/linux#5.10.245-245.983.amzn2.x86_64 md/arch#x86_64 lang/python#3.9.23 md/pyimpl#CPython cfg/retry-mode#standard",
  "errorCode": "ThrottlingException",
  "tlsDetails": {
    "tlsVersion": "TLSv1.3",
    "cipherSuite": "TLS_AES_128_GCM_SHA256",
    "clientProvidedHostHeader": "example.us-east-1.amazonaws.com"
  }
}

DescribeEnvironmentManagedActions

#
Service
elasticbeanstalk

Description

Lists an environment's upcoming and in-progress managed actions. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.08",
  "eventID": "62d3cdba-a56e-4662-98b8-c61bd80cd500",
  "eventSource": "elasticbeanstalk.amazonaws.com",
  "eventName": "DescribeEnvironmentManagedActions",
  "awsRegion": "us-east-1",
  "eventType": "AwsApiCall",
  "readOnly": true,
  "managementEvent": true,
  "requestID": "eeb4791d-cf67-48ee-a45d-ebe5d5e9687d",
  "userAgent": "Botocore/1.35.95 ua/2.0 os/linux#5.10.245-245.983.amzn2.x86_64 md/arch#x86_64 lang/python#3.9.23 md/pyimpl#CPython cfg/retry-mode#standard",
  "tlsDetails": {
    "tlsVersion": "TLSv1.3",
    "cipherSuite": "TLS_AES_128_GCM_SHA256",
    "clientProvidedHostHeader": "example.us-east-1.amazonaws.com"
  }
}

DescribeEnvironmentResources

#
Service
elasticbeanstalk

Description

Returns AWS resources for this environment. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.08",
  "eventID": "0e0bca4b-1f1f-4e56-a92d-3db92b0e063d",
  "eventSource": "elasticbeanstalk.amazonaws.com",
  "eventName": "DescribeEnvironmentResources",
  "awsRegion": "us-east-1",
  "eventType": "AwsApiCall",
  "readOnly": true,
  "managementEvent": true,
  "requestID": "0dbeb6df-c000-4c17-94cb-33eab94c5de4",
  "userAgent": "aws-sdk-go-v2/1.43.0 ua/2.1 os/linux lang/go#1.26.5 md/GOOS#linux md/GOARCH#arm64 api/elasticbeanstalk#1.29.4 m/E,i",
  "tlsDetails": {
    "tlsVersion": "TLSv1.3",
    "cipherSuite": "TLS_AES_128_GCM_SHA256",
    "clientProvidedHostHeader": "example.us-east-1.amazonaws.com"
  }
}

DescribeEnvironments

#
Service
elasticbeanstalk

Description

Returns descriptions for existing environments.

Example CloudTrail Event #

{
  "awsRegion": "ap-southeast-2",
  "eventCategory": "Management",
  "eventID": "43d39b6c-0df3-447a-9b6a-c3abfa293e28",
  "eventName": "DescribeEnvironments",
  "eventSource": "elasticbeanstalk.amazonaws.com",
  "eventTime": "2021-04-13T11:35:13Z",
  "eventType": "AwsApiCall",
  "eventVersion": "1.08",
  "managementEvent": true,
  "readOnly": true,
  "recipientAccountId": "111111111111",
  "requestID": "eef72f29-80ec-4123-8792-d706857dfd15",
  "requestParameters": null,
  "responseElements": null,
  "sourceIPAddress": "95.90.195.80",
  "userAgent": "aws-sdk-nodejs/2.885.0 linux/v14.16.1 callback",
  "userIdentity": {
    "accessKeyId": "AKIAYTOGP2RLGBSBSMH2",
    "accountId": "111111111111",
    "arn": "arn:aws:iam::111111111111:user/cloudsploit",
    "principalId": "AIDAYTOGP2RLMDEPWZWMJ",
    "type": "IAMUser",
    "userName": "cloudsploit"
  }
}

References #

DescribeEvents

#
Service
elasticbeanstalk

Description

Returns list of event descriptions matching criteria up to the last 6 weeks. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

DescribeInstancesHealth

#
Service
elasticbeanstalk

Description

Retrieves detailed information about the health of instances in your AWS Elastic Beanstalk. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

DescribePlatformVersion

#
Service
elasticbeanstalk

Description

Describes a platform version. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

DisassociateEnvironmentOperationsRole

#
Service
elasticbeanstalk

Description

Disassociate the operations role from an environment. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

ListAvailableSolutionStacks

#
Service
elasticbeanstalk

Description

Returns a list of the available solution stack names, with the public version first and then in reverse chronological order. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

ListPlatformBranches

#
Service
elasticbeanstalk

Description

Lists the platform branches available for your account in an AWS Region. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

ListPlatformVersions

#
Service
elasticbeanstalk

Description

Lists the platform versions available for your account in an AWS Region. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

ListTagsForResource

#
Service
elasticbeanstalk

Description

Return the tags applied to an AWS Elastic Beanstalk resource. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

RebuildEnvironment

#
Service
elasticbeanstalk

Description

Deletes and recreates all of the AWS resources (for example: the Auto Scaling group, load balancer, etc.) for a specified environment and forces a restart. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

RequestEnvironmentInfo

#
Service
elasticbeanstalk

Description

Initiates a request to compile the specified type of information of the deployed environment. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

RestartAppServer

#
Service
elasticbeanstalk

Description

Causes the environment to restart the application container server running on each Amazon EC2 instance. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

RetrieveEnvironmentInfo

#
Service
elasticbeanstalk

Description

Retrieves the compiled information from a RequestEnvironmentInfo request. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

SwapEnvironmentCNAMEs

#
Service
elasticbeanstalk

Description

Swaps the CNAMEs of two environments. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

TerminateEnvironment

#
Service
elasticbeanstalk

Description

Terminates the specified environment. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

UpdateApplication

#
Service
elasticbeanstalk

Description

Updates the specified application to have the specified properties. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

UpdateApplicationResourceLifecycle

#
Service
elasticbeanstalk

Description

Modifies lifecycle settings for an application. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

UpdateApplicationVersion

#
Service
elasticbeanstalk

Description

Updates the specified application version to have the specified properties. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

UpdateConfigurationTemplate

#
Service
elasticbeanstalk

Description

Updates the specified configuration template to have the specified properties or configuration option values. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

UpdateEnvironment

#
Service
elasticbeanstalk

Description

Updates the environment description, deploys a new application version, updates the configuration settings to an entirely new configuration template, or updates select configuration option values in the running environment. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

UpdateTagsForResource

#
Service
elasticbeanstalk

Description

Update the list of tags applied to an AWS Elastic Beanstalk resource. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

ValidateConfigurationSettings

#
Service
elasticbeanstalk

Description

Takes a set of configuration settings and either a configuration template or environment, and determines whether those values are valid. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.