Last Updated : Dec 20, 2023 |

General Data Protection Regulation (GDPR) prevents the loss of personal data by improving data security.

When GDPR is enabled, Avaya SBC uses a 12-character passphrase that you have provided to encrypt the files in the following folders:

Application logs and trace filesThe encrypted files can be stored locally or to a remote log server. When configured to store the encrypted files to a remote log server, the encrypted files are pushed to the server based on the duration defined while configuring the log server. Avaya SBC encrypts the files that reach the maximum size of 10 MB or that are older than 6 hours. Application logs:
  • SSYNDI logs: /archive/log/ipcs/ss/logfiles/elog/SSYNDI/

  • OAMPSERVER logs: /archive/log/ipcs/ss/logfiles/elog/OAMPSERVER/

  • SYSMON logs: /archive/log/ipcs/ss/logfiles/elog/SYSMON/

  • Turnserver logs: /archive/log/turnserver/

  • Nginx logs: /archive/log/nginx/

  • Scrubber logs: /archive/log/scrubber/

  • /archive/pcapfiles/IPCS2/

Trace files:
  • SIP traces: /archive/log/tracesbc/tracesbc_sip/

  • PPM traces: /archive/log/tracesbc/tracesbc_ppm/

Packet capturesThe encrypted files can be stored locally or to a remote log server. When configured to store the encrypted files to a remote log server, the encrypted files are pushed to the server based on the duration defined while configuring the log server. Avaya SBC encrypts the files every 15 minutes.
  • Pcap files: /archive/pcapfiles/IPCS2/

CDR filesCDR files can be stored locally, to a RADIUS server, or to a CDR adjunct server. When stored locally, the files are encrypted as soon as they are created. When stored in the CDR adjunct server, the files are encrypted as soon as they are created and pushed to the server according to the interval defined in the Update Interval field. When stored in the RADIUS server, GDPR has not effect. The files are not encrypted and pushed to the server as soon as they are created.
  • CDR files: /archive/cdr/

Note:

Avaya SBC compresses the files before encrypting.

Note:

Before enabling GDPR, Avaya SBC might have unencrypted log information that will not comply to GDPR.

You can use the openssl command to decrypt the files.

TracesbcYou can now run tracesbc in a GDPR-compliant Avaya SBC. However, encrypted records will not show in the tracesbc output.