Slide 35
Slide 35 text
©2018 OSInet - Licensed under Creative Commons CC-BY-SA 4.0
6.8 Forensics : logs
• You use off-site logs, right ?
• SaaS : Loggly, Logmatic,
Logsene, Logz.io, Papertrail,
Scalyr….
• Homegrown remote ELK
• GDPR
• Data Processor constraints
(Rec. 81)
• Record of processing
activities (Art. 30)
• Still on-site ? Read-write ?
• dblog {watchdog}
• syslog → redirects chain
• mongodb_watchdog
• redis_watchdog
• GELF/Graylog, Logstash
• Application/WS logs
35