»Audit Log Management

Vault audit loggin is available by default on all production-grade clusters.

The audit logs are written locally to the Vault instance and also stored in an encrypted Amazon S3 bucket which is in the same region as the Vault cluster.

You can retrieve the audit logs in one-hour increments from the HCP portal. The API to retrieve the audit logs are coming soon.

»Retention

The plan tiers contain a set amount of storage that persists both snapshot data and audit log data. Therefore, the audit log retention varies based on the plan tier and size.