<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/"><channel><title>Iot-Security on ZX Cloud Security</title><link>https://zxcloudsecurity.co.uk/tags/iot-security/</link><description>Recent content in Iot-Security on ZX Cloud Security</description><generator>Hugo</generator><language>en-GB</language><lastBuildDate>Wed, 03 Jun 2026 07:00:00 +0000</lastBuildDate><atom:link href="https://zxcloudsecurity.co.uk/tags/iot-security/index.xml" rel="self" type="application/rss+xml"/><item><title>AWS IoT Core Adds Auth &amp; Ping Logs in CloudWatch</title><link>https://zxcloudsecurity.co.uk/posts/aws-iot-core-cloudwatch-ping-authn-error-logs/</link><pubDate>Wed, 03 Jun 2026 07:00:00 +0000</pubDate><guid>https://zxcloudsecurity.co.uk/posts/aws-iot-core-cloudwatch-ping-authn-error-logs/</guid><description>AWS IoT Core now offers Ping and Connection.AuthNError CloudWatch log types to help detect connectivity failures and authentication errors across IoT fleet</description><content:encoded><![CDATA[<p>🟢 <strong>Low</strong>  |  <strong>Source:</strong> <a href="https://aws.amazon.com/about-aws/whats-new/2026/06/aws-iot-core-ping-auth-logs/">AWS What&rsquo;s New</a></p>
<hr>
<p>AWS IoT Core has introduced two new CloudWatch log event types: Ping logs for MQTT Keep-alive messages and Connection.AuthNError logs for failed authentication attempts. These logs help operators identify devices struggling to maintain connections and quickly diagnose certificate or credential failures across IoT fleets. This is an observability improvement rather than a security fix, but it meaningfully strengthens the ability to detect and respond to authentication anomalies.</p>
<blockquote>
<p><strong>Architect&rsquo;s Take:</strong> Enable these new log event types in your AWS IoT Core logging configuration and consider creating CloudWatch Metric Filters or alarms on Connection.AuthNError events to surface potential credential misuse or certificate expiry issues proactively — particularly useful in large-scale fleets where silent authentication failures are easy to miss.</p>
</blockquote>
<p><strong>Original advisory:</strong> <a href="https://aws.amazon.com/about-aws/whats-new/2026/06/aws-iot-core-ping-auth-logs/">AWS IoT Core adds new logs to troubleshoot connectivity and authentication</a></p>
]]></content:encoded></item></channel></rss>