Documentation
¶
Overview ¶
Package googlecloudlogcomputeapiaudit_impl defines the implementation of the googlecloudlogcomputeapiaudit task.
Package googlecloudlogcomputeapiaudit_impl defines the implementation of the googlecloudlogcomputeapiaudit task.
Index ¶
Constants ¶
This section is empty.
Variables ¶
var ClusterIdentityAliasTask = coretask.NewAliasTask( googlecloudlogcomputeapiaudit_contract.ClusterIdentityTaskID, googlecloudk8scommon_contract.ClusterIdentityTaskID.Ref(), )
var FieldSetReaderTask = inspectiontaskbase.NewFieldSetReadTask(googlecloudlogcomputeapiaudit_contract.FieldSetReaderTaskID, googlecloudlogcomputeapiaudit_contract.ListLogEntriesTaskID.Ref(), []log.FieldSetReader{ &googlecloudcommon_contract.GCPOperationAuditLogFieldSetReader{}, })
FieldSetReaderTask parses GCPOperationAuditLogFieldSet from raw Compute API logs.
var ListLogEntriesTask = googlecloudcommon_contract.NewListLogEntriesTask(&computeAPIListLogEntriesTaskSetting{})
var LogGrouperTask = inspectiontaskbase.NewLogGrouperTask(googlecloudlogcomputeapiaudit_contract.LogGrouperTaskID, googlecloudlogcomputeapiaudit_contract.FieldSetReaderTaskID.Ref(), func(ctx context.Context, l *log.Log) string { audit, err := log.GetFieldSet(l, &googlecloudcommon_contract.GCPAuditLogFieldSet{}) if err != nil { return "unknown" } return getInstanceNameFromResourceName(audit.ResourceName) })
LogGrouperTask groups GCE API audit logs by node resource name for parallel mapper processing.
var LogIngesterTask = googlecloudcommon_contract.NewGCPOperationLogIngesterTask( googlecloudlogcomputeapiaudit_contract.LogIngesterTaskID, googlecloudlogcomputeapiaudit_contract.FieldSetReaderTaskID.Ref(), googlecloudlogcomputeapiaudit_contract.LogTypeComputeApi, )
LogIngesterTask is a V2 task that ingests log metadata (timestamp, severity, summary, log type) into KHI v6 format.
var LogToTimelineMapperTask = inspectiontaskbase.NewLogToTimelineMapperTaskV2[*googlecloudcommon_contract.GCPOperationTracker](googlecloudlogcomputeapiaudit_contract.LogToTimelineMapperTaskID, &gcpComputeAuditLogLogToTimelineMapperSetting{}, inspectioncore_contract.FeatureTaskLabelV2("Compute API Logs", "Gather Compute API audit logs to visualize the provisioning of infrastructure resources (e.g., GCE VM creation/deletion, Persistent Disk mounting) on associated timelines.", 6000, true, ), )
LogToTimelineMapperTask maps GCE API audit logs to timeline events and revisions in parallel.
Functions ¶
func GenerateComputeAPIQuery ¶
func GenerateComputeAPIQuery(taskMode inspectioncore_contract.InspectionTaskModeType, nodeNames []string) []string
GenerateComputeAPIQuery generates a query for compute API logs.
func Register ¶
func Register(registry coreinspection.InspectionTaskRegistry) error
Register registers all googlecloudlogcomputeapiaudit inspection tasks to the registry.
flowchart TD
ListLogEntriesTask FieldSetReadTask LogIngesterTask LogGrouperTask LogToTimelineMapperTask ListLogEntriesTask --> FieldSetReadTask ListLogEntriesTask -->LogIngesterTask FieldSetReadTask --> LogGrouperTask LogGrouperTask --> LogToTimelineMapperTask LogIngesterTask --> LogToTimelineMapperTask
Types ¶
This section is empty.