Logging and monitoring

PostgreSQL instance where ‘log_min_duration_statement’ flag value isn’t set to -1

Risk Level

Informational (4)

Platform(s)
Compliance Frameworks

Description

The log_min_duration_statement flag defines the minimum amount of execution time of a statement in milliseconds where the total duration of the statement is logged. Logging SQL statements may include sensitive information that should not be recorded in logs.
  • Recommended Mitigation

    Remove 'log_min_duration_statement' database flag (default value is -1)