Enable the SQL audit log feature

更新时间:
复制 MD 格式

Lindorm This topic describes how to enable the SQL audit log feature in the Lindorm console.

Prerequisites

The minor version of LindormTable is 2.7.6 or later. For information about how to view or update the minor version of LindormTable, see Release notes of LindormTable and Upgrade the minor engine version of a Lindorm instance.

Usage notes

  • The SQL audit log feature is not supported for Lindorm Serverless and single-node instances.

  • If you enable the audit log feature as a RAM user, you must grant the AliyunLogFullAccess permission to the RAM user. For more information about how to grant permissions to a RAM user, see Grant permissions to a RAM user.

  • After the audit log feature is enabled, Lindorm creates a project and a dedicated Logstore in the region where the Lindorm instance is deployed.

    • The naming format for a Project is aliyun-product-Alibaba Cloud Account ID-region ID.

    • The name of the dedicated Logstore is lindorm-sql-audit-log.

  • You cannot perform specific operations on dedicated Logstores. For example, you cannot write data to a dedicated Logstore or modify or delete the indexes of a dedicated Logstore. In addition, you cannot modify the attributes of a dedicated Logstore. However, no limits are imposed on features such as data query, statistical analysis, and alerting.

  • Make sure that SLS is available. If SLS becomes unavailable, the full log analysis feature cannot be used.

Billing

Log Service charges pay-as-you-go fees for SQL audit logs based on storage space and retention period. For detailed pricing information, see Log Service Pricing.

Procedure

  1. Log on to the Lindorm console.

  2. In the upper-left corner of the page, select the region where the instance is deployed.

  3. On the Instances page, click the ID of the target instance or click View Instance Details in the Actions column for the instance.

  4. In the left-side navigation pane, click Wide Table Engine.

  5. Click the SQL Audit Logs tab, and then click Enable audit logs.

  6. In the Enable SQL Audit Logs dialog box, click OK.