-
Epic
-
Resolution: Done-Errata
-
Blocker
-
quay-v3.9.0
-
None
Story: As a Quay administrator I like to be able to forward all logs to a Splunk deployment so that I can do for further analysis and offload the internal database.
Why is this important: Quay supports ElasticSearch as a log forward target. Splunk is another stream/log data analysis solution common in enterprise deployments and usually deployed as an alternative to ElasticSearch rather than in parallel.
Acceptance criteria:
- all logs relevant for audits are forwarded to Splunk Enterprise
- no additional plugins are required to be installed on the Splunk side
- SSL communication with Splunk
- Token-based auth with Splunk
- is documented by
-
PROJQUAY-5058 Log forward to Splunk
- Closed
- is related to
-
RFE-4500 Quay 3.9.0 can't see audit logs on Quay Console when setting LOGS_MODEL to Splunk
- Accepted
- links to
- mentioned on
(1 links to, 6 mentioned on)
There are no Sub-Tasks for this issue.