Skip to content

Commit e6b7250

Browse files
[Email Security] Logs (#18277)
* [Email Security] Logs * [Email Security] Adding prereq * Update src/content/docs/cloudflare-one/insights/email-monitoring/email-security-logs.mdx Co-authored-by: Jun Lee <[email protected]> --------- Co-authored-by: Jun Lee <[email protected]>
1 parent d5f6f60 commit e6b7250

File tree

1 file changed

+60
-0
lines changed

1 file changed

+60
-0
lines changed
Lines changed: 60 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,60 @@
1+
---
2+
title: Email Security logs
3+
pcx_content_type: how-to
4+
sidebar:
5+
order: 5
6+
---
7+
8+
Email Security allows you to configure Logpush to send detection data to an endpoint of your choice.
9+
10+
## Prerequisites
11+
12+
Before you can enable Logpush for Email Security, you will have to:
13+
14+
1. Create an [R2 bucket](/r2/get-started/#2-create-a-bucket).
15+
2. Once you have created your R2 bucket, [create an API token](/r2/api/s3/tokens/). Under **Permissions**, ensure you select **Admin Read & Write**.
16+
3. Once you have created your R2 API Token, the dashboard will display an **Access Key ID** and a **Secret Access Key**. Save these two, as you will need them to set up Logpush later.
17+
18+
## Enable Logpush jobs
19+
20+
To enable Logpush for Email Security:
21+
22+
1. Log in to the [Cloudflare dashboard](https://dash.cloudflare.com/).
23+
2. Select **Analytics & Logs** > **Logpush**.
24+
2. Select **Create a Logpush job**, then select **S3-Compatible**.
25+
3. Enter the **destination details**:
26+
- **Bucket (required)**: Enter the bucket name.
27+
- **Endpoint URL**: Enter your endpoint URL. To find your endpoint URL:
28+
- On the Cloudflare dashboard, go to **R2 Object Storage** > **Overview** > Select your bucket.
29+
- Go to Settings, and copy and paste the **S3 API** URL.
30+
- **Bucket region**: Enter the region of your bucket. To find the bucket region:
31+
- On the dashboard, go to **R2 Object Storage** > **Overview** > Select your bucket.
32+
- Go to **Settings**, and find your region in **Location**.
33+
- **Access Key ID**: Enter the Access Key ID you created as a [prerequisite](/cloudflare-one/insights/email-monitoring/email-security-logs/#prerequisites).
34+
- **Secret Access Key**: Enter the Secret Access Key you created as a [prerequisite](/cloudflare-one/insights/email-monitoring/email-security-logs/#prerequisites).
35+
4. Select **Continue**.
36+
37+
Your destination has now been configured.
38+
39+
To view the job you created:
40+
41+
1. Log in to the [Cloudflare dashboard](https://dash.cloudflare.com/).
42+
2. Go to **R2 Object Storage**, select your bucket.
43+
3. Select **Objects**.
44+
45+
## Audit logs
46+
47+
Once you have configured your destination, you can audit logs:
48+
49+
1. Log in to the [Cloudflare dashboard](https://dash.cloudflare.com/).
50+
2. Select **Analytics & Logs** > **Logpush**.
51+
3. Select **Audit logs**.
52+
4. Under **Configure logpush job**:
53+
- **Job name**: Enter the job name.
54+
- **If logs match**: Select **Filtered logs**:
55+
- **Field**: Choose `ResourceType`.
56+
- **Operator**: Choose `starts with`.
57+
- **Value**: Enter `email_security`.
58+
5. Select **Submit**.
59+
60+
Your job has now been created successfully.

0 commit comments

Comments
 (0)