v1

latestOpenAPI 3.0.0Apache 2.0 License2026-07-1448206184.6 KB

Creates or updates a destination. This operation is used only to create destinations for cross-account subscriptions.

A destination encapsulates a physical resource (such as an Amazon Kinesis stream). With a destination, you can subscribe to a real-time stream of log events for a different account, ingested using PutLogEvents.

Through an access policy, a destination controls what is written to it. By default, PutDestination does not set any access policy with the destination, which means a cross-account user cannot call PutSubscriptionFilter against this destination. To enable this, the destination owner must call PutDestinationPolicy after PutDestination.

To perform a PutDestination operation, you must also have the iam:PassRole permission.

post/#X-Amz-Target=Logs_20140328.PutDestination

Headers

X-Amz-Target'Logs_20140328.PutDestination' required

Request body

destinationNamestring required

A name for the destination.

targetArnstring required

The ARN of an Amazon Kinesis stream to which to deliver matching log events.

roleArnstring required

The ARN of an IAM role that grants CloudWatch Logs permissions to call the Amazon Kinesis <code>PutRecord</code> operation on the destination stream.

tagsobject
<p>An optional list of key-value pairs to associate with the resource.</p> <p>For more information about tagging, see <a href="https://docs.aws.amazon.com/general/latest/gr/aws_tagging.html">Tagging Amazon Web Services resources</a> </p>

Response

Success