Logging to Amazon S3
As well as storing logs to one of its data warehouses, Secure Access can store logs to an Amazon S3 bucket.
By having your logs uploaded to an S3 bucket, you can then automatically download logs so that you can keep them in perpetuity in backup storage outside of the Secure Access data warehouse storage system. Saving to an S3 bucket also gives you the ability to ingest logs through your SIEM or another security tool. This can help you determine if any security events in your Secure Access logs coincide with events in other security tools.
Secure Access Amazon S3 options:
- A self-managed bucket—You own the Amazon S3 bucket, including its configuration and management.
- A Cisco-managed bucket—Cisco Secure Access owns the bucket and sets the configuration and management of it.