Power Platform Audit Logging
This section describes the design decisions associated with Power Platform specific audit logging for system(s) built using ASD's Blueprint for Secure Cloud.
Estimated reading time: 1 minute
Power Platform activities are logged as follows:
- Power Apps – written to unified audit log.
- Power Automate – written to unified audit log.
- Power BI – written to unified audit log and additional Power BI activity log.
- DLP Policy – creation, update, and deletion written to unified audit log.
Note:
- Dataverse and model-driven apps logging is stored within Dataverse.
- Alerting can be triggered via unified audit log alert policies or via integration with a Security Information and Event Management (SIEM) solution.
Design Decisions
Decision Point | Design Decision | Justification |
---|---|---|
Auditing | Enabled | Enabled for log access and read logs. As a guide, logs should be retained for seven years to align ISM-0859; however, organisations should consider their overall operating context and retention strategy. Logs are sent to the unified audit log. |
Related information
Security & Governance
Design
Configuration
- None identified