View traffic and threat logs for your Managed AIRS for AWS resource through the
Strata Logging Service in Strata Cloud Manager.
| Where Can I Use This? | What Do I Need? |
|
|
- Access to Strata Cloud Manager (SCM)
|
On Strata Cloud Manager (SCM), you can instantly access a filtered log view
in the Strata Logging Service (SLS) for your Managed AIRS resource.
View AI Traffic and Threat SLS Logs
To successfully monitor and analyze your AI traffic as described, the
configurations and logs are managed across two Strata Cloud Manager (SCM) and
Amazon Web Services (AWS).
Logging Setup: In your Strata Cloud Manager, ensure that log
forwarding destinations, such as Secure Log Streaming (SLS) and AWS CloudWatch log
groups, are properly tied to the active AIRS firewall configuration.
SLS Traffic Logs: Open the SLS log viewer to monitor parsed
sessions. By filtering sessions where the metadata field AI Traffic resolves to
True, you can view detailed baseline diagnostic telemetry, highlighting
the origin Kubernetes IDs, active application classifications (e.g., Amazon Bedrock
Base), encryption status, and proxy flow histories.
SLS Threat Logs: Review the dedicated AI Security logs to pinpoint
security incidents caught by the cloud inspection loop. Threats matching configured
policy flags will clearly register with an AI Security subtype tag. This gives
security teams detailed log reports showing the exact malicious prompt strings sent
by the container client and the resulting block or alert verdict passed down by the
firewall.
View Managed AIRS logs in Strata Cloud Manager
Following are the steps to analyze traffic and threat logs without manually
constructing log queries in Strata Cloud Manager: