Aggregation of logs
If the number of servers is low, then it is possible to check logs in individual machines, but if the number of servers is large, then think of some sort of log aggregation.
Access to aggregated logs must be secure, reliable and often it needs to be backed up.
It needs to be secured so that only people that need to look at the logs will investigate the events.
It needs to be reliable, so that access to these logs will be available when it is needed.
Often the log files need to be backed up, so it would be possible to investigate historical events. The duration of historical events need to be determined by company’s lawyer, as long duration of log files may represent a liability.
Comments
Post a Comment