Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

BACKPORT 712 DOC Audit security config change (#66839) #67624

Conversation

albertzaharovits
Copy link
Contributor

Backport of #66839

Audit log doc changes about:

  • the new security_config_change event type (main scope of this PR)
  • remove mentions of the 6.5 audit format changes (the JSON format)
  • mention the new archiving and rotation by size (in v8 only)
  • mention the request.id event attribute used to correlate audit events
  • mention that audit is only available on certain subscription levels
  • add an exhaustive audit event example list (because schema became too complex to explain in words 😢 given the new security_config_change events)
  • move the ignore policies are explained on a separate page (it was collocated with the logfile output since we had multiple outputs and the policies were specific the the logfile only).

Co-authored-by: Lisa Cawley [email protected]

Relates #62916
Closes #29912

Audit log doc changes about:
* the new security_config_change event type (main scope of this PR)
* remove mentions of the 6.5 audit format changes (the JSON format)
* mention the new archiving and rotation by size (in v8 only)
* mention the request.id event attribute used to correlate audit events
* mention that audit is only available on certain subscription levels
* add an exhaustive audit event example list (because schema became too complex to explain in words 😢 given the new security_config_change events)
* move the ignore policies are explained on a separate page (it was collocated with the logfile output since we had multiple outputs and the policies were specific the the logfile only).

Co-authored-by: Lisa Cawley [email protected]

Relates elastic#62916
Closes elastic#29912
@albertzaharovits albertzaharovits self-assigned this Jan 16, 2021
@albertzaharovits albertzaharovits added the >docs General docs changes label Jan 16, 2021
@elasticmachine elasticmachine added the Team:Docs Meta label for docs team label Jan 16, 2021
@elasticmachine
Copy link
Collaborator

Pinging @elastic/es-docs (Team:Docs)

@albertzaharovits albertzaharovits merged commit bc579a4 into elastic:7.x Jan 16, 2021
@albertzaharovits albertzaharovits deleted the backport_7x_docs_audit_request_body_for_certain_transport_requests branch January 16, 2021 18:16
albertzaharovits added a commit to albertzaharovits/elasticsearch that referenced this pull request Jan 16, 2021
Audit log doc changes about:
* the new security_config_change event type (main scope of this PR)
* remove mentions of the 6.5 audit format changes (the JSON format)
* mention the new archiving and rotation by size (in v8 only)
* mention the request.id event attribute used to correlate audit events
* mention that audit is only available on certain subscription levels
* add an exhaustive audit event example list (because schema became too complex to explain in words 😢 given the new security_config_change events)
* move the ignore policies are explained on a separate page (it was collocated with the logfile output since we had multiple outputs and the policies were specific the the logfile only).

Co-authored-by: Lisa Cawley [email protected]

Relates elastic#62916
Closes elastic#29912
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
backport >docs General docs changes Team:Docs Meta label for docs team v7.12.0
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants