alitheg commented on issue #957:
URL: 
https://github.com/apache/tooling-trusted-releases/issues/957#issuecomment-4160940311

   Does this belong in the storage audit log @sbp? We have an entry to the 
request in the request log and all subsequent requests get logged with both 
user IDs, so we have sufficient evidence to trace an impersonation, and if we 
wanted to alert on sensitive things we could do so on the initial impersonation 
request - it feels to me like the storage audit log is for changes to the 
releases themselves?


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: [email protected]

For queries about this service, please contact Infrastructure at:
[email protected]


---------------------------------------------------------------------
To unsubscribe, e-mail: [email protected]
For additional commands, e-mail: [email protected]

Reply via email to