[observability] Observability Coverage Report - 2026-07-01 #42589
Closed
Replies: 1 comment
|
This discussion has been marked as outdated by Daily Observability Report for AWF Firewall and MCP Gateway. A newer discussion is available at Discussion #42850. |
0 replies
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Uh oh!
There was an error while loading. Please reload this page.
Caution
agentic threat detected
Threat detection flagged this output in warn mode. Manual review is REQUIRED before any follow-up automation.
Details
The threat detection engine failed to produce results.
Review the workflow run logs for details.
Executive Summary
Analyzed a capped set of 20 recent runs from the last 7 days. Firewall observability is the problem: 18 firewall-enabled runs had firewall summaries, but none exposed the expected
access.logartifact, so request-level debugging is not available. MCP telemetry is healthy: both MCP-enabled runs exposedrpc-messages.jsonl, which is an acceptable fallback whengateway.jsonlis absent.Caution
Critical issue: all 18 firewall-enabled runs in the sample are missing
access.log.Note
No MCP-critical gaps detected.
rpc-messages.jsonlwas present and valid in both MCP-enabled runs.Key Alerts and Anomalies
gateway.jsonlis not a critical gap becauserpc-messages.jsonlexists.Coverage Summary
access.log)gateway.jsonlorrpc-messages.jsonl)📋 Detailed Run Analysis
Firewall-Enabled Runs
Missing Firewall Logs (
access.log)All 18 firewall-enabled runs above are missing
access.log; there are no additional firewall runs in the capped sample with request-level Squid logs attached.MCP-Enabled Runs
rpc-messages.jsonlrpc-messages.jsonlMissing MCP Telemetry
None. Both MCP-enabled runs had usable structured telemetry, and neither is a critical gap.
🔍 Telemetry Quality Analysis
Firewall Log Quality
awf-config.jsonwas present on the firewall-enabled runs and showed isolation-enabled firewall settings.access.logentries analyzed: 0localhost:8080,awmg-mcpg:8080, and mixed allowed/blocked domain activity.Gateway Log Quality
rpc-messages.jsonlfallback.github,safeoutputsHealthy Runs Summary
AvengerandReleaseboth had usable MCP telemetry and no protocol errors.Recommended Actions
access.login the expected extracted path.rpc-messages.jsonlas the canonical MCP fallback, but prefergateway.jsonlwhen it is available.access.logis surfaced immediately.References:
Report generated automatically by the Daily Observability Report workflow
Analysis window: Last 7 days | Runs analyzed: 20
All reactions