Skip to main content

Management / Logging / Threats / DEV

Log Ingestion Performance Degradation

CCC.Logging.TH01

The logging service's ingestion pipeline experiences performance degradation due to overwhelming log volumes, network bottlenecks, or inefficient processing, leading to delayed availability of log data for analysis and potential log loss if buffers overflow.

Related Capabilities

IDTitleDescription
CCC.Logging.CP03Real-Time Log IngestionLogs should be ingested in near real-time to enable timely detection and response.
CCC.Logging.CP04Centralised Log CollectionAbility to centralise logs from different resources within a signle logging solution or platform.
CCC.Logging.CP06Log Filtering & TransformationAbility to to filter, normalise, and transform raw log data at ingestion to optimise storage and enhance usability.

External Mappings

FrameworkIDRemarks
MITRE-ATT&CKT1499Endpoint Denial of Service
MITRE-ATT&CKT1498Network Denial of Service
MITRE-ATT&CKT1562.008Impair Defenses: Disable Cloud Logs