AWS Route53: Clarify that Route 53 query logs may be incomplete
Summary
Rewords the query logs description to state that logs might not capture every DNS query and may contain only one query out of several thousand.
Security assessment
This is security-adjacent guidance about the completeness/limitations of DNS query logging, which matters for audit and incident investigation, but it documents no new control or fixed vulnerability.
Evidence
+Query logs might not capture every DNS query. The number of logged queries depends on how many queries are submitted for a domain name (example.com) or subdomain name (www.example.com), which resolvers your users use, and the TTL for the record. In some cases, logs contain only one query out of every several thousand.
Diff
diff --git a/Route53/latest/DeveloperGuide/query-logs.md b/Route53/latest/DeveloperGuide/query-logs.md index 84a269b3b..a05d8d2bc 100644 --- a//Route53/latest/DeveloperGuide/query-logs.md +++ b//Route53/latest/DeveloperGuide/query-logs.md @@ -30 +30 @@ Query logs contain only the queries that DNS resolvers send to Route 53. If a DN -Depending on how many DNS queries are submitted for a domain name (example.com) or subdomain name (www.example.com), which resolvers your users are using, and the TTL for the record, query logs might contain information about only one query out of every several thousand queries that are submitted to DNS resolvers. For more information about how DNS works, see [How internet traffic is routed to your website or web application](./welcome-dns-service.html). +Query logs might not capture every DNS query. The number of logged queries depends on how many queries are submitted for a domain name (example.com) or subdomain name (www.example.com), which resolvers your users use, and the TTL for the record. In some cases, logs contain only one query out of every several thousand. For more information about how DNS works, see [How internet traffic is routed to your website or web application](./welcome-dns-service.html).