The goal of this page is to describe how MSTC deals with logging.
Microsoft Azure
There are different types of logging in place for MSTC.
Auditing log - not deleted
Web log - not deleted
Network log - ???
System Event log - 3 months
One of the improvement points planned for the second part of 2022 is to query the logs and send automated daily reports based on the findings. This solution will be based on Application Insights (for Azure resources) and CloudWatch (for the AWS resources).
Amazon web services
Not supported??
The solution supports audit trails of changes, which are secured from unauthorized modification, available through technical interface to FC (SIEM integration), and contain information of any security related event so that forensic investigation can be done and security events detected
Add Comment