Mender blog

New hosted Mender release: Audit logs

As always, security and robustness is the prime directive of Mender and yet this new release for hosted Mender is another testament to that directive.

We are happy to announce that Mender Enterprise now supports Audit logging!

Audit logs are an important cornerstone for improving security, compliance and accountability by logging important events that can later be analyzed in case of security or operational incidents. This can greatly help in security impact analysis, as well as post mortem analysis in order to avoid similar issues happening in the future.

For example, if there is a support incident where certain devices do not operate properly, the audit log can be used to check if any recent deployments were made against them, and if so, who created the deployment and when.

The Mender Audit log creates immutable log entries when key events occur, including:

  • Deployment created
  • User created
  • User changed (e.g. role or password)
  • User removed

In all these cases, a comprehensive set of attributes are logged such as which user performed the action, what change was, and the time. To retrieve the logs, a new user interface has been added to the Mender web UI.

cd2f7c9357a59f4b636efd0fe90edb318918522a-audit-log-3@770-370

In order to inspect suspicious activity from a specific user, it supports filtering by the user performing the actions.

You can also filter by change type, for example to see audit log entries of all deployments to Production.

As always, all functionality is also available through the Mender REST APIs, so it is easy to integrate Mender Audit logs into other systems you have, such as collecting them into a SEIM system for correlation with other applications.

Recent articles

New release: Mender for Microcontrollers (MCUs), like Zephyr RTOS

Official release: Mender for Microcontrollers (MCUs), like Zephyr, and the Micro Device Tier

Mender launches support for microcontrollers with the new Micro Device Tier, enabling efficient OTA updates for resource-constrained devices like Zephyr-based MCUs.
Success with AI in MedTech depends on the software infrastructure beneath it

Success with AI in MedTech depends on the software infrastructure beneath it

Explore how robust software infrastructure is essential for the success of AI in MedTech, ensuring compliance, security, and lifecycle sustainability in medical devices.
Succeeding in the IoT product landscape: How OEMs align AI, software, and time-to-Market

Succeeding in the IoT product landscape: How OEMs align AI, software, and time-to-Market

Discover how OEMs can effectively align AI and software to enhance their IoT products, tackle time-to-market challenges, and ensure long-term success.
View more articles

Learn why leading companies choose Mender

Discover how Mender empowers both you and your customers with secure and reliable over-the-air updates for IoT devices. Focus on your product, and benefit from specialized OTA expertise and best practices.

 
sales-pipeline_295756365