access_log_retention_in_days
Description
The access_log_retention_in_days parameter sets retention_in_days on the Fluentd output that ships Nginx access logs to CloudWatch Logs. Those logs go to the Rack system group /convox/<rack>/system, in the stream /nginx-access-logs.
The value is not applied to that log group. Fluentd writes a retention policy only for a log group it creates itself, the Rack creates /convox/<rack>/system when it writes its first event, and Fluentd's IAM role does not grant logs:PutRetentionPolicy. Use cloudwatch_retention_in_days to control how long CloudWatch keeps the Rack system group.
Default Value
The default value for access_log_retention_in_days is 7.
Setting Parameters
To set the access_log_retention_in_days parameter, use the following command:
$ convox rack params set access_log_retention_in_days=30 -r rackName
Updating parameters... OK
The value is stored and rendered into the Fluentd configuration. Changing it rolls the Fluentd DaemonSet once while the apply runs. It does not change the retention on any log group.
Additional Information
The parameter is still accepted and still stored. It is not deprecated and it is not replaced by another parameter, and setting it is harmless. It has no effect on how long CloudWatch keeps anything.
See Also
- cloudwatch_retention_in_days for how long CloudWatch keeps the Rack, App, and EKS control plane log groups
- App Settings for the per-App
awsLogsoverride - Logging for an overview of Convox logging