CloudTrail Event: IssueCertificate
Example CloudTrail record:
{
"eventSource": "acm-pca.amazonaws.com",
"eventName": "IssueCertificate",
"userIdentity": {
"arn": "arn:aws:iam::123456789012:role/provisioning-service-role"
},
"requestParameters": {
"certificateAuthorityArn": "arn:aws:acm-pca:us-east-1:....",
"templateArn": "arn:aws:acm-pca:::template/EndEntityCertificate/V1",
"validity": { "value": 90, "type": "DAYS" },
"idempotencyToken": "device-SN-12345-20260906"
},
"responseElements": {
"certificateArn": "arn:aws:acm-pca:us-east-1:...:certificate/abc123"
},
"sourceIPAddress": "10.0.1.45"
}
This tells you: the provisioning Lambda issued a cert for device SN-12345 on Sep 6.