Uploaded image for project: 'Project Quay'
  1. Project Quay
  2. PROJQUAY-4993

Support Action Log Forward to Splunk

XMLWordPrintable

    • Icon: Epic Epic
    • Resolution: Done-Errata
    • Icon: Blocker Blocker
    • quay-v3.9.0
    • quay-v3.9.0
    • quay
    • None
    • Splunk Forwarding
    • False
    • None
    • False
    • Green
    • To Do
    • 0% To Do, 0% In Progress, 100% Done

      Story: As a Quay administrator I like to be able to forward all logs to a Splunk deployment so that I can do for further analysis and offload the internal database.

      Why is this important: Quay supports ElasticSearch as a log forward target. Splunk is another stream/log data analysis solution common in enterprise deployments and usually deployed as an alternative to ElasticSearch rather than in parallel.

      Acceptance criteria:

      • all logs relevant for audits are forwarded to Splunk Enterprise
      • no additional plugins are required to be installed on the Splunk side
      • SSL communication with Splunk
      • Token-based auth with Splunk

              hgovinda Harish Govindarajulu
              doconnor@redhat.com Dave O'Connor
              luffy zhang luffy zhang
              Votes:
              0 Vote for this issue
              Watchers:
              8 Start watching this issue

                Created:
                Updated:
                Resolved: