--- Class[Profile::Tlsproxy::Envoy].orig
+++ Class[Profile::Tlsproxy::Envoy]
@@
- access_log => False
+ access_log => True
File[/etc/envoy/listeners.d/00-tls_terminator_8443.yaml]
- Content differences:
--- /etc/envoy/listeners.d/00-tls_terminator_8443.yaml.orig
+++ /etc/envoy/listeners.d/00-tls_terminator_8443.yaml
@@ -25,6 +25,18 @@
common_http_protocol_options:
idle_timeout: 125.0s
stream_idle_timeout: 1800.0s
+ access_log:
+ - name: envoy.file_access_log
+ filter:
+ status_code_filter:
+ comparison:
+ op: "GE"
+ value:
+ default_value: 500
+ runtime_key: global_tls_min_log_code
+ typed_config:
+ "@type": type.googleapis.com/envoy.extensions.access_loggers.file.v3.FileAccessLog
+ path: "/var/log/envoy/global_tls.log"
route_config:
virtual_hosts:
- name: non_sni_port_443
Envoyproxy::Conf[tls_terminator_8443]
Envoyproxy::Listener[tls_terminator_8443]
Envoyproxy::Tls_terminator[8443]
- Parameters differences:
--- Envoyproxy::Tls_terminator[8443].orig
+++ Envoyproxy::Tls_terminator[8443]
@@
- access_log => False
+ access_log => True