Log Retention

Log Retention

The retention period varies depending on the type of logs.

The audit logs that determine logins, changes, client arrivals/departures, etc (e.g., what we'd normally use for HIPAA compliance) are normally maintained for months. It depends on how much activity is going on in the system, of course, but it is not unusual to find audit logs going back 1 year or more.

The cloud logs that track gateway activity, firewall events, IDS/IPS status, probes, etc. go back at least a month but usually much more. We would normally expect to see logs going back 3 months on an average system.

The Round Robin Databases in the cloud that are used to generate the monthly reports, and also contain information such as traffic volumes, per-country alerts, etc rotate after 1 year, so they contain a year's worth of data.

The detailed on-board gateway and AP syslogs and diagnostic logs are usually maintained for at least 1 week, but frequently go back to 2-3 weeks (again, depending on activity).
    • Related Articles

    • Firewall log retention

      Our basic firewall (without Advanced Security enabled or HIPAA BAA compliance) we do maintain basic inbound logging and reporting, and limited recording of LAN device activity (e.g., devices present on the LAN and traffic records). The duration of ...
    • Domain Controller (Active Directory) Setup

      Introduction There aren't any guidelines or instructions on the functioning of the Uplevel Domain Controller because it acts essentially identically to a conventional Microsoft Domain Controller from the standpoint of workstations. Microsoft offers a ...
    • Active Directory GPO - Roaming Profiles

      Microsoft Documentation https://learn.microsoft.com/en-us/windows-server/storage/folder-redirection/deploy-roaming-user-profiles Introduction A roaming user profile is a file synchronization concept in the Windows operating system that allows users ...
    • Active Directory GPO - Folder Redirection

      Microsoft Documentation https://learn.microsoft.com/en-us/windows-server/storage/folder-redirection/folder-redirection-rup-overview If you deploy roaming user profiles with folder redirection in an environment with existing local user profiles, ...
    • Active Directory GPO - Folder Redirection

      Microsoft Documentation https://learn.microsoft.com/en-us/windows-server/storage/folder-redirection/folder-redirection-rup-overview Introduction When a user with the folder redirection GPO logs into a Domain joined host, a copy of their directories ...