Severity: MediumHigh
Description: Checks for S3 buckets without access logging turned on. Access logging allows customers to view complete audit trail on sensitive workloads such as S3 buckets. It is recommended that Access logging is turned on for all S3 buckets to meet audit & compliance requirement.
...
Login to the AWS Console at https://console.aws.amazon.com and navigate to the 'S3' service.
Click on the the S3 bucket that was reported.
Click on the 'Properties' tab.
Under the 'Server access logging' section, select 'Enable logging' option.
...
Enable logging.
Set Target Bucket to receive the log record objects. Set Target Prefix (Optional).
Choose save.
Importent :
Reference: