diff --git a/docs/index.md b/docs/index.md index 02dbeb7..7edae10 100644 --- a/docs/index.md +++ b/docs/index.md @@ -19,5 +19,6 @@ SAP Cloud Logging service is an instance-based and environment-agnostic observab - [Rotate the Ingestion Root CA Certificate](rotate-the-ingestion-root-ca-certificate-bbcb3e7.md) - [Access and Analyze Observability Data](access-and-analyze-observability-data-dad5b01.md) - [Data Protection and Privacy](data-protection-and-privacy-80e76fd.md) +- [Security Recommendations](security-recommendations.md) - [Backup and Restore Custom Contents](backup-and-restore-custom-contents-5b9bc66.md) diff --git a/docs/security-recommendations.md b/docs/security-recommendations.md new file mode 100644 index 0000000..12a8692 --- /dev/null +++ b/docs/security-recommendations.md @@ -0,0 +1,14 @@ +# Security Recommendations for SAP Cloud Logging + +SAP Cloud Logging publishes a list of recommendations to be considered for security configuration under [SAP BTP Security Recommendations - Cloud Logging](https://help.sap.com/docs/btp/sap-btp-security-recommendations-c8a9bb59fe624f0981efa0eff2497d7d/sap-btp-security-recommendations?seclist-index=BTP-CLS). + +Please verify whether the recommendations are relevant to you and ensure that your Cloud Logging instances are configured accordingly. + +## Monitor Security Recommendations with SAP Cloud ALM + +With the Configuration & Security Analysis app of [SAP Cloud ALM](https://help.sap.com/docs/cloud-alm), you can check if your Cloud Logging instances are configured in alignment with the [SAP BTP Security Recommendations - Cloud Logging](https://help.sap.com/docs/btp/sap-btp-security-recommendations-c8a9bb59fe624f0981efa0eff2497d7d/sap-btp-security-recommendations?seclist-index=BTP-CLS). + +{: .note } + +> - Cloud Logging reports data to SAP Cloud ALM daily. For more information, see [Monitor Security Recommendations with SAP Cloud ALM](https://help.sap.com/docs/btp/sap-btp-security-recommendations-c8a9bb59fe624f0981efa0eff2497d7d/monitor-security-recommendations-with-sap-cloud-alm). +> - Currently, only the **critical**-level security recommendation (setting up SAML authentication with Identity Authentication Service) is reported from SAP Cloud Logging to SAP Cloud ALM.