|
| 1 | +--- |
| 2 | +title: Email Security logs |
| 3 | +pcx_content_type: how-to |
| 4 | +sidebar: |
| 5 | + order: 5 |
| 6 | +--- |
| 7 | + |
| 8 | +Email Security allows you to configure Logpush to send detection data to an endpoint of your choice. |
| 9 | + |
| 10 | +## Prerequisites |
| 11 | + |
| 12 | +Before you can enable Logpush for Email Security, you will have to: |
| 13 | + |
| 14 | +1. Create an [R2 bucket](/r2/get-started/#2-create-a-bucket). |
| 15 | +2. Once you have created your R2 bucket, [create an API token](/r2/api/s3/tokens/). Under **Permissions**, ensure you select **Admin Read & Write**. |
| 16 | +3. Once you have created your R2 API Token, the dashboard will display an **Access Key ID** and a **Secret Access Key**. Save these two, as you will need them to set up Logpush later. |
| 17 | + |
| 18 | +## Enable Logpush jobs |
| 19 | + |
| 20 | +To enable Logpush for Email Security: |
| 21 | + |
| 22 | +1. Log in to the [Cloudflare dashboard](https://dash.cloudflare.com/). |
| 23 | +2. Select **Analytics & Logs** > **Logpush**. |
| 24 | +2. Select **Create a Logpush job**, then select **S3-Compatible**. |
| 25 | +3. Enter the **destination details**: |
| 26 | + - **Bucket (required)**: Enter the bucket name. |
| 27 | + - **Endpoint URL**: Enter your endpoint URL. To find your endpoint URL: |
| 28 | + - On the Cloudflare dashboard, go to **R2 Object Storage** > **Overview** > Select your bucket. |
| 29 | + - Go to Settings, and copy and paste the **S3 API** URL. |
| 30 | + - **Bucket region**: Enter the region of your bucket. To find the bucket region: |
| 31 | + - On the dashboard, go to **R2 Object Storage** > **Overview** > Select your bucket. |
| 32 | + - Go to **Settings**, and find your region in **Location**. |
| 33 | + - **Access Key ID**: Enter the Access Key ID you created as a [prerequisite](/cloudflare-one/insights/email-monitoring/email-security-logs/#prerequisites). |
| 34 | + - **Secret Access Key**: Enter the Secret Access Key you created as a [prerequisite](/cloudflare-one/insights/email-monitoring/email-security-logs/#prerequisites). |
| 35 | +4. Select **Continue**. |
| 36 | + |
| 37 | +Your destination has now been configured. |
| 38 | + |
| 39 | +To view the job you created: |
| 40 | + |
| 41 | +1. Log in to the [Cloudflare dashboard](https://dash.cloudflare.com/). |
| 42 | +2. Go to **R2 Object Storage**, select your bucket. |
| 43 | +3. Select **Objects**. |
| 44 | + |
| 45 | +## Audit logs |
| 46 | + |
| 47 | +Once you have configured your destination, you can audit logs: |
| 48 | + |
| 49 | +1. Log in to the [Cloudflare dashboard](https://dash.cloudflare.com/). |
| 50 | +2. Select **Analytics & Logs** > **Logpush**. |
| 51 | +3. Select **Audit logs**. |
| 52 | +4. Under **Configure logpush job**: |
| 53 | + - **Job name**: Enter the job name. |
| 54 | + - **If logs match**: Select **Filtered logs**: |
| 55 | + - **Field**: Choose `ResourceType`. |
| 56 | + - **Operator**: Choose `starts with`. |
| 57 | + - **Value**: Enter `email_security`. |
| 58 | +5. Select **Submit**. |
| 59 | + |
| 60 | +Your job has now been created successfully. |
0 commit comments