Amazon CloudWatch Log Centralization Now Supports Log Group Tag Propagation
Amazon CloudWatch Centralization now allows propagation of log group tags from source accounts to destination log groups, improving cost and ownership tracking. This enhancement automatically copies and syncs tags such as Application and CostCenter during log aggregation from multiple accounts and Regions. Platform teams can use these propagated tags for granular IAM access control conditions and accurate cost reporting in AWS Cost Explorer. This feature is generally available in all AWS Regions where CloudWatch Centralization operates and can be enabled via the console, CLI, or SDKs.
Features (1) ›
- Propagate Log Group Tags During CloudWatch Centralization
Amazon CloudWatch Centralization now copies and synchronizes log group tags from source accounts to destination log groups created by centralization rules. This allows maintaining cost, ownership, and compliance tags across aggregated log data from multiple accounts and Regions. The propagated tags can be used for IAM access control and cost reporting in AWS Cost Explorer.
https://aws.amazon.com/about-aws/whats-new/2026/08/amazon-cloudwatch-centralization-tag-propogation/
Related releases
- AWS Lambda functions now support full IAM resource-based policies AWS What's New ·
- Amazon EKS now supports multiple external OIDC identity providers per cluster AWS What's New ·
- Amazon DynamoDB Streams now supports attribute-based access control (ABAC) AWS What's New ·
- AWS Partner Central agents MCP Server now supports OAuth with AWS Sign-In AWS What's New ·
- AWS IAM Increases Default Managed Policies Per Role to 20 AWS What's New ·
- AWS details external web access for Amazon Bedrock's Web Search AWS What's New ·