In This Section

Configure declarative audit devices Use this how-to to configure OpenBao audit devices from server configuration. This profile gives you repeatable audit devices for HA OpenBao deployments and keeps audit changes … Audit logs as security records Use this explainer to understand how OpenBao audit logs fit into a security observability design. It is for operators who need to protect audit records, interpret audit metrics, … Audit archive reference design Use this explainer to design a durable audit archive path for OpenBao. It is for platform, security, and compliance teams that need audit evidence beyond short-term dashboard … OpenBao audit overview dashboard Use this explainer to read the generated OpenBao audit overview dashboard. It is for operators who need to separate audit-device health, audit event volume, and high-risk audited … OpenBao audit investigation dashboard Use this explainer to read the generated OpenBao audit investigation dashboard. It is for operators who need restricted drilldown by request ID, request path, operation, or node … Audit request and response failures Use this runbook when an audit failure alert fires because OpenBao reports request or response audit logging failures. Treat the alert as both an availability risk and an evidence … Audit canary missing Use this runbook when the OpenBaoAuditCanaryMissing alert fires because Loki has not received the expected audit canary request. The canary proves that OpenBao writes audit events, … Audit archive degraded Use this runbook when the OpenBaoAuditArchiveDegraded alert fires because the durable audit archive path is enabled but missing, stale, failing, or dead-lettering records. The …