View Traffic and Threat Logs in Strata Cloud Manager
Focus
Focus
Prisma AIRS

View Traffic and Threat Logs in Strata Cloud Manager

Table of Contents

View Traffic and Threat Logs in Strata Cloud Manager

View traffic and threat logs for your Managed AIRS for AWS resource through the Strata Logging Service in Strata Cloud Manager.
Where Can I Use This?What Do I Need?
  • Managed AIRS for AWS
  • Access to Strata Cloud Manager (SCM)
On Strata Cloud Manager (SCM), you can instantly access a filtered log view in the Strata Logging Service (SLS) for your Managed AIRS resource.
View AI Traffic and Threat SLS Logs
To successfully monitor and analyze your AI traffic as described, the configurations and logs are managed across two Strata Cloud Manager (SCM) and Amazon Web Services (AWS).
Logging Setup: In your Strata Cloud Manager, ensure that log forwarding destinations, such as Secure Log Streaming (SLS) and AWS CloudWatch log groups, are properly tied to the active AIRS firewall configuration.
SLS Traffic Logs: Open the SLS log viewer to monitor parsed sessions. By filtering sessions where the metadata field AI Traffic resolves to True, you can view detailed baseline diagnostic telemetry, highlighting the origin Kubernetes IDs, active application classifications (e.g., Amazon Bedrock Base), encryption status, and proxy flow histories.
SLS Threat Logs: Review the dedicated AI Security logs to pinpoint security incidents caught by the cloud inspection loop. Threats matching configured policy flags will clearly register with an AI Security subtype tag. This gives security teams detailed log reports showing the exact malicious prompt strings sent by the container client and the resulting block or alert verdict passed down by the firewall.
View Managed AIRS logs in Strata Cloud Manager
Following are the steps to analyze traffic and threat logs without manually constructing log queries in Strata Cloud Manager:
  1. Log in to the Strata Cloud Manager (SCM) console.
  2. Go to Configurations > Managed AIRS for AWS. This will display the list of your Managed AIRS for AWS resources.
  3. Click Firewall ID of the specific Managed AIRS for AWS resource you want to view. This opens the detailed overview page for that particular firewall.
  4. Click View Logs link on the overview panel.
    This action will open the Log Viewer, typically in a new tab, and it will be automatically filtered to show the logs specifically for the Managed AIRS for AWS resource you selected in above step 3.​​