Image Processing Apparatus with Transmission-Aware Audit Log Deletion
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing audit log management systems fail to ensure complete storage and review of audit logs due to potential overwriting when storage capacity is reached, leading to possible omission of critical security-related events.
Innovation Solution
An image processing apparatus with a controller that generates audit logs, adds identification information, and prioritizes deletion based on storage capacity, ensuring complete log storage and review.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Quantity of substance
If audit logs are automatically overwritten when storage capacity is reached, then storage capacity is maintained, but audit log completeness deteriorates
Solution Approach 1:
The system performs preliminary actions by adding identification information (such as transmission status flags) to audit logs before they are potentially overwritten. This allows the system to prioritize which logs to retain and which to delete, ensuring that logs that have already been transmitted or are critical for security are protected from overwriting, thus maintaining audit log completeness while managing storage capacity.
2Loss of information
If manual deletion of audit logs is required to prevent overwriting, then audit log completeness is maintained, but operational complexity increases
Solution Approach 1:
The system implements self-service by automatically managing audit log deletion based on predefined criteria. The controller monitors storage capacity and automatically deletes audit logs that meet deletion conditions (such as logs that have been transmitted and are no longer needed, or logs marked for deletion). This eliminates the need for manual intervention while maintaining audit log completeness, thus reducing operational complexity.
3Quantity of substance
If audit logs are deleted after transmission to administrator side, then storage efficiency is improved, but risk of log omission increases
Solution Approach 1:
The system uses feedback mechanisms by adding identification information to audit logs that indicates whether they have been successfully transmitted to the administrator side. The controller continuously monitors transmission status and uses this feedback to determine which logs are safe to delete. Only logs with confirmation of successful transmission are marked for deletion, ensuring that no logs are prematurely removed and maintaining log retrieval reliability while improving storage efficiency.
Data Source
AI summary
An image processing apparatus includes a controller capable of generating occurrence of an event to be audited, as log information; a storage that stores the log information; an outputter that reads and outputs the log information stored in the storage in response to an acquisition request for the log information by an information processing apparatus; and an adder that adds, to the log information, identification information indicating that the log information has been stored in the information processing apparatus. The controller stores the log information added with the identification information in the storage. In a case where a storage amount of the log information stored in the storage has reached an upper limit when newly storing log information generated in association with occurrence of the event, the controller deletes the log information added with the identification information from the storage, and stores the generated log information.


