You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Enable Wiz integration to send Wiz alerts to DataDog
Fastly
Google Workspace (rust-lang.org)
Google Workspace (rustfoundation.org)
Heroku
Audit trail are enterprise only (we aren't enterprise)
There are no Heroku integrations or content packs in Datadog
we already ship logs for activity in Heroku, we just need to add these logs to the filter of Cloud SIEM. the security team added the following filter to the index: OR (source:heroku @syslog.procid:api -"scheduler@addons.heroku.com")
non-critical infrastructure
WP Engine (check if it's easy via a wordpress plugin)
GCP (rust-lang.org and Rust Foundation organizations)
The three Crunchy Bridge clusters are already sending service:postgres logs.
There are AUDIT: SESSION pgAudit records in the logs, including read/write and administrative activity.
Discarded
1password: for events reporting we need 1password business plan. So I'm marking this as done because both the rust-lang and rust-foundation 1password vaults are on the team plan (so we can't send audit logs to datadog cloud siem).
Mailgun: we want to get rid of it in the near future, so no need to monitor it.
critical infrastructure
rust-lang.org)rustfoundation.org)OR (source:heroku @syslog.procid:api -"scheduler@addons.heroku.com")non-critical infrastructure
rust-lang.organd Rust Foundation organizations)service:postgreslogs.AUDIT: SESSION pgAuditrecords in the logs, including read/write and administrative activity.Discarded