Amazon MSK now delivers Kafka Authorizer Logs to customers
Amazon MSK now supports Authorizer Log Delivery for Provisioned clusters, including Standard and Express brokers, at no additional cost, enabling detailed visibility into user and application access.
Amazon Managed Streaming for Apache Kafka (MSK) now supports Authorizer Log Delivery for Provisioned clusters, including both Standard and Express brokers, at no additional cost. With authorizer logs, you gain detailed visibility into user and application access, identify and address client authorization issues, and meet your organization's security requirements. Each denied authorization request is captured with the client's IP address and the API it attempted, allowing you to pinpoint the root cause. You can deliver logs to Amazon CloudWatch Logs, Amazon S3, or Amazon Data Firehose. Authorizer Log Delivery is available for both new and existing Provisioned clusters and can be enabled from the Amazon MSK console or AWS CLI. Amazon MSK is a fully managed service for Apache Kafka that simplifies ingesting and processing streaming data in real time. Authorizer Log Delivery is supported in all AWS Regions where Amazon MSK Provisioned clusters are available, except for the AWS European Sovereign Cloud (eusc-de-east-1) Region. To get started, visit the Amazon MSK Developer Guide.