- S3 server access logs can now be delivered to CloudWatch Logs with KMS encryption, cross‑account/region aggregation, and alarm support.
- Logs can be mirrored to S3 Tables in Apache Iceberg format for instant SQL querying via Athena, Redshift, and other engines at no extra storage cost.
- The CloudWatch Logs delivery is available in all standard AWS Regions, except China and GovCloud (US).