AWS Redshift Clusters have audit logging disabled. Logging data can be extremely useful for security and compliance audits or troubleshooting sessions.
Amazon Redshift logs can be exported to either an S3 bucket or to Cloudwatch. To prepare for either, follow the AWS documentation guide (below) on how to configure the appropriate destination prior to enabling logging, then continue with the cluster configuration steps.
In AWS Console -
In Terraform -
References:
https://docs.aws.amazon.com/redshift/latest/mgmt/db-auditing.html
https://registry.terraform.io/providers/hashicorp/aws/latest/docs/resources/redshift_cluster#logging