It is a valid requirement for a production deployment to publish/log
context data during the operations like OAuth token generation.

As of now, we don't log these audio data. One close existing candidate is
HTTP access logs. But it doesn't contain any context information like
client ID.

What we can do is, use an audit logger in relevant classes and start
logging the data.

Do we have any concerns with this?

-- 
*Best Regards*

*Rushmin Fernando*
*Technical Lead*

WSO2 Inc. <http://wso2.com/> - Lean . Enterprise . Middleware

mobile : +94775615183
_______________________________________________
Architecture mailing list
[email protected]
https://mail.wso2.org/cgi-bin/mailman/listinfo/architecture

Reply via email to