Why Ylastic reads my S3 buckets

Dmitriy's Avatar


25 Nov, 2015 10:31 AM


We are located in Germany and using Frankfurt AWS region.

We made some analysis on the usage of our S3 buckets and figured out that our buckets are regularly read from USA.
Further analysis showed that our this IP was used to read out buckets, and this IP belongs to Ylastic.

Looking at Ylastic I don't see a single piece of functionality related to S3, except for the panel in Security section, which does not show anything (see attachment)

Dear Ylastic team, this month, more than 1G of traffic was read by your IP only for one of our buckets. We are paying for it. Could you explain why it is needed?

AWS Account: 130970442058
bucket: filings

  1. Support Staff 1 Posted by Ylastic on 25 Nov, 2015 02:14 PM

    Ylastic's Avatar

    If you have spending integrated, we have to read the s3 bucket. If you are an enterprise customer and use cloudtrail and config integration, we need to read s3 buckets too. AWS puts all spending files, and logs in S3. So to process spending we will need to actually download and process spending data from S3.

  2. 2 Posted by Dmitriy on 27 Nov, 2015 08:49 AM

    Dmitriy's Avatar

    Is it safe to deny Ylastic user the permissions to access all of the buckets except for the one with billing data?

  3. Support Staff 3 Posted by Ylastic on 27 Nov, 2015 01:29 PM

    Ylastic's Avatar

    Absolutely. We only need to read the bucket with the billing data.

  4. Ylastic closed this discussion on 03 Feb, 2017 01:32 PM.

Comments are currently closed for this discussion. You can start a new one.

Keyboard shortcuts


? Show this help
ESC Blurs the current field

Comment Form

r Focus the comment reply box
^ + ↩ Submit the comment

You can use Command ⌘ instead of Control ^ on Mac