Skip to content

audit chain and log file integrity #39

Description

@kckil

// Shared in-memory audit sink so /check and /audit/replay both

Looks like this is already a to-do for you, but you may want to consider pulling all of this logic out into a separate handler. Eventually you may want to build in log file integrity to preserve full audit chain accountability (e.g., https://docs.aws.amazon.com/awscloudtrail/latest/userguide/cloudtrail-log-file-validation-intro.html). You may also want this to be easily configurable for durable off-box storage into s3/datadog or similar using a Otel drain.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Fields

    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions