This section is not relevant to SaaS deployments.
How to Send Logs to / Forensic Acquisition and Investigation
There are several methods for sending logs to / Forensic Acquisition and Investigation, listed in order of ease:
-
Automatically through the UI: Navigate to the Help screen in the / Forensic Acquisition and Investigation platform and click on
Send Logs to Cado. This will automatically package the logs and send them securely to / Forensic Acquisition and Investigation over HTTPS. -
Download and upload manually: If automatic sending fails, click on
Download Logsin the UI. Then, upload the downloaded zip file to the Customer Portal. -
Via SSH: If you cannot access the platform via the UI, open an SSH session to the / Forensic Acquisition and Investigation platform using the key from deployment. Run the following command:
sudo tar -cvzf /var/log/cado_logs.tar.gz /var/logThen, upload the generated zip file to the Customer Portal.
Downloading Logs for a single processing pipeline
Logs for an individual pipeline can be downloaded by selecting "Platform" on the left menu, then clicking "Download pipeline" on the pipeline you are interested in. This will download a zip file containing the logs just for that pipeline.
Data Privacy
Secure settings in logs are redacted before sending to Cado.
For example, the following log line:
Got setting CLOUD_CRED_AWS_Default Acquisition: *****