[observability] Observability Coverage Report - 2026-07-24 #47674
Closed
Replies: 1 comment
|
This discussion has been marked as outdated by Daily Observability Report for AWF Firewall and MCP Gateway. A newer discussion is available at Discussion #47877. |
0 replies
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Uh oh!
There was an error while loading. Please reload this page.
Caution
agentic threat detected
Threat detection flagged this output in warn mode. Manual review is REQUIRED before any follow-up automation.
Details
The threat detection engine failed to produce results.
Review the workflow run logs for details.
Executive Summary
I sampled two recent workflow runs from the last 7 days that already had both firewall and MCP telemetry artifacts on disk. Coverage is present in both areas, so there are no critical observability gaps in the sampled runs. The main issue is log quality: the firewall logs show only successful CONNECT tunnels plus proxy-side transaction-end-before-headers errors, and the MCP telemetry is present only as raw
rpc-messages.jsonlwith limited structure.Overall health is good but not fully ideal. Both sampled runs are still
in_progress, so this is a live snapshot rather than a completed-run audit. The telemetry is enough to debug most issues, but deny-path firewall evidence and richer MCP gateway metrics are missing.Key Alerts and Anomalies
No critical issues detected.
🔴 Critical Issues:
transaction-end-before-headerserrors.rpc-messages.jsonlin both sampled runs, but the entries are sparse and lack the richer structured fields expected fromgateway.jsonl.Coverage Summary
access.log)gateway.jsonlorrpc-messages.jsonl)📋 Detailed Run Analysis
Firewall-Enabled Runs
Missing Firewall Logs (
access.log)MCP-Enabled Runs
rpc-messages.jsonlrpc-messages.jsonlMissing MCP Telemetry (no
gateway.jsonlorrpc-messages.jsonl)🔍 Telemetry Quality Analysis
Firewall Log Quality
access.logentries analyzed: 268api.anthropic.com,api.githubcopilot.com,o205451.ingest.us.sentry.io,otlp-gateway-prod-eu-west-2.grafana.netGateway Log Quality
rpc-messages.jsonlfallbacksafeoutputsHealthy Runs Summary
Recommended Actions
gateway.jsonloutput for MCP runs where available; keeprpc-messages.jsonlas the fallback, but add schema fields needed for richer debugging.transaction-end-before-headersbursts inaccess.logas a quality signal to review, because they can mask incomplete proxy-side traces.📊 Historical Trends
Not enough completed-run history was sampled here to establish a meaningful trend line.
Report generated automatically by the Daily Observability Report workflow
Analysis window: Last 7 days | Runs analyzed: 2
References:
All reactions