-
Notifications
You must be signed in to change notification settings - Fork 20
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
idea: add suggestion on logging #80
Comments
Are the slides online already? Can you elaborate otherwise? |
I don't know the scope, but I'd LOVE if we had a tutorial for (centralized) log management! |
This would be really great to see. I would definitely like to read this content as I want to learn how to perform this kind of logging/aggregation. The context of the original proposal was: there is a lack of comprehensive, good documentation available on how to plug CRS+ModSecurity into systems like OpenSearch (formerly Kibana) and others. Some vendors have their own proprietary solutions or internal/pay-walled documentation. There are some scattered guides available on the public internet, but I've not come across one that's complete or easy to follow. It would be great if CRS could provide an A to Z, easy to follow, complete guide on how to do something along these lines. We've raised the idea before (coreruleset.org/docs/operation/log_handling/), but we've never had the knowledge and time to do anything about it. What we need:
|
I could not agree more. I've had this conversation with customers repeatedly for many, many years. My current work on dashboards brings me closer to his, but it's the essential part that is missing. Still miles away from this central piece. |
Shall we start a google doc on this? |
@RedXanadu's presentation on our CRS Dublin 2023 summit proposed interesting questions. One idea was to add information about how to do logging, what is important, etc.
The text was updated successfully, but these errors were encountered: