Uploaded image for project: 'Observability Documentation'
  1. Observability Documentation
  2. OBSDOCS-280

Store audit Logs in default (internal) Lokistack

XMLWordPrintable

    • Icon: Bug Bug
    • Resolution: Done
    • Icon: Normal Normal
    • None
    • Logging 5.6, Logging 5.7
    • Logging
    • None
    • 3
    • False
    • Hide

      None

      Show
      None
    • True
    • OBSDOCS (Feb 12 - Mar 4) #249
    • Low

      According to the Logging official documentation, we found references to send the audit logs to the default (internal) Elasticsearch:
      "Because the internal OpenShift Container Platform Elasticsearch log store does not provide secure storage for audit logs, audit logs are not stored in the internal Elasticsearch instance by default. If you want to send the audit logs to the default internal Elasticsearch log store, for example to view the audit logs in Kibana, you must use the Log Forwarding API as described in Forward audit logs to the log store"

      As currently we also support Loki as default storage logging system, these references should be updated.

              abrennan@redhat.com Ashleigh Brennan
              acandelp Adrian Candel
              Votes:
              0 Vote for this issue
              Watchers:
              1 Start watching this issue

                Created:
                Updated:
                Resolved: