There are two main log types that you need to enable and monitor:

  1. Logs that are related to the AWS infrastructure and specific AWS services
  2. Host-based logs that your systems produce and are exactly the same as the host-based logs that on-premise servers produce