Policy Life cycle
Stage
Component
Description
Policy Source Configuration
event_format: OTEL
event_url: http://OTEL_IP:4318
ucpcm:
policy_url: s3://<policybucket>/
policy: policy.json
policy_sig: policy.json.sig
public_key: s3://<policybucket>/pol_pubkey.pem
transport:
transport_type: s3
auth_method: default
region: us-east-2When a Policy Is Applied
Policy Loading Workflow
Enforcement Modes
Mode
Behavior
Policy Generation and Signing using TREX tool
Validation Overview
1. Confirm BlueRock Control plane Service Is Running
2. Confirm Policy Download and Signature Verification in Runtime Logs
3. Confirm Policy Lifecycle Events in CloudWatch (OTEL Telemetry)
Example OTEL Policy Lifecycle Events
Policy Download Attempt
Policy Download Started
Policy Download Completed
Policy Download Success
4. Confirm Runtime Policy Is Loaded
5. Trigger Rule Condition
6. Verify Policy Evaluation in Logs
Last updated