How do we set up logging in OCI such that all actions performed on users and groups are logged in OCI?
@Sushanta Chakraborty-Oracle - Kindly review the blog post below. It provides guidance that should help you accomplish your objective.
https://www.ateam-oracle.com/post/elevate-oci-identity-security-by-collecting-historical-oci-audit-logs-using-oci-logging-analytics-rest-api-ingestion#:~:text=Oracle%20Cloud%20Infrastructure%20(OCI)%20Audit,and%20investigating%20potential%20security%20incidents.
Hi @Sumanth V -Oracle thanks for the blog. However, this is way too much for us. Our problem is probably much simpler. We are not even looking to capture historical logs …. 14 days is good for us.
Our issue is that we are unable to see any logs in OCI logging when someone creates a User in IAM, assigns a user to a Group, or performs similar actions. This should be very basic .. unless we are missing some steps. Do we really need Access Governance service for this?