sourcegraph / sourcegraph-public-snapshot

Code AI platform with Code Search & Cody
https://sourcegraph.com
Other
10.12k stars 1.29k forks source link

SOC2 - GN-89 Provide Evidence of GCP Storage #29578

Closed JenRed777 closed 2 years ago

JenRed777 commented 2 years ago

Due: February 1, 2022 Sourcegraph uses a logging tool to log, continuously monitor, and retain account activity related to user actions throughout the production environment. Logs are stored encrypted and access to logs is restricted to those who require access to perform their job duties.

Provide a walkthrough of how to view logs. Cloud: "How can I see if a user deleted the production database" Managed Instance: "How can I see if a user deleted the production database"

github-actions[bot] commented 2 years ago

Heads up @daxmc99 @JenRed777 @danieldides - the "team/devops" label was applied to this issue.

filiphaftek commented 2 years ago

@JenRed777 should this be included in handbook?

2. How to audit logs

GCP documentation

How and where are logs stored - documented in excel.

2.1. How to search audit logs for particular event:

Note: example for CloudSQL instance connect action via GCP web console.

filiphaftek commented 2 years ago

@JenRed777 created document

daxmc99 commented 2 years ago

Needs managed instance portion added

daxmc99 commented 2 years ago

Syncing with @sourcegraph/security to see if we can couple this with their current managed instance work

JenRed777 commented 2 years ago

Asked @ferozsalam a few questions in slack to complete the document How long are the logs stored for? What GCP bucket are they being sent to? Are they stored int he same GCP project as the sourcegrpah.com GCP audit logs?

ferozsalam commented 2 years ago

Hey @JenRed777 - have replied on Slack!

JenRed777 commented 2 years ago

This one is complete