AWS_Budgets_1

Enable detailed billing

Description

Enable Detailed Billing to cause the generation of a log record for every event or hourly ongoing activity which incurs cost in an AWS account. These records are aggregated into CSV files of hourly records, and written to an S3 bucket. A CSV (Comma Separated Values) file of billing records is written at least every 24 hours; writing of files is often more frequent.

Remediation

There is currently no AWS CLI support for this operation, so it is necessary to use the Management Console.

As a user with IAM permission to read and write billing information (aws-portal:*Billing):

  • Sign in to the AWS Management Console and open the Billing and Cost Management console at https://console.aws.amazon.com/billing/home#/.
  • On the navigation pane, choose Preferences.
  • Select the Receive Billing Reports check box.
  • Designate the Amazon S3 bucket where you want AWS to publish your detailed billing reports.
  • Ensure that policy allows read access only to appropriate groups of users (finance, auditors, etc). For appropriate groups in IAM who you want to have read access, include the following policy element:
    • Statement”:[ { “Effect”:”Allow”, “Action”:[ “s3:GetObject”, “s3:GetObjectVersion&rdquo

Service

Budgets

Severity

Medium

Compliance

Mapping

We are now live on AWS Marketplace.
The integrated view of your cloud infrastructure is now easier than ever!