|
|
|
|
|
by xxs
3032 days ago
|
|
>A reasonable reading of GDPR makes standard web server logs (which contain IP addresses) a punishable offense... You need retention policies and if you use the web logs for (let's say) detection malicious behavior or troubleshooting, you are in the clear. |
|
Of course in reality nothing is that simple, but it can be done, and it can be done automatically. I am sure there will be GDPR nginx plugins/configs available soon.