configuring-audit-logging

Installation
SKILL.md

Configuring Audit Logging

Configures SQL audit logging on CockroachDB clusters to capture security-relevant events such as authentication attempts, privilege changes, DDL operations, and sensitive data access. Supports both cluster-wide audit settings and role-based audit policies for targeted logging.

When to Use This Skill

  • Enabling audit logging to meet SOC 2, HIPAA, or PCI DSS compliance requirements
  • Setting up role-based audit policies for specific users or roles
  • Verifying that audit logging is properly configured and capturing events
  • Responding to a security audit finding about missing audit trails
  • Investigating security incidents by reviewing audit log configuration

Prerequisites

  • SQL access with admin role (required to modify cluster settings)
  • CockroachDB version: 22.2+ for role-based audit logging
  • Log export configured for persistent audit trail (CockroachDB Cloud exports logs to your cloud provider)
  • Storage planning: Audit logging increases log volume; plan for additional storage
Related skills

More from cockroachlabs/cockroachdb-skills

Installs
27
GitHub Stars
9
First Seen
Mar 23, 2026