A high-performance, Redis Streams–based audit logging and event streaming system for the OmniBioAI ecosystem. It provides zero-trust observability, HPC-safe audit trails, and real-time security event processing across distributed services.
The audit system captures and streams security-relevant events from:
- Authentication service
- IAM client (token validation, cache hits/misses)
- Policy engine (RBAC/ABAC decisions)
- Workflow execution (TES, HPC jobs)
- Control plane operations
It is designed for:
- Sub-millisecond logging overhead
- Distributed microservices
- HPC-scale workloads
- Zero-trust architectures
Services (Auth / IAM / Policy / TES)
│
▼
Audit Logger (async)
│
▼
Redis Streams (audit:events)
│
┌───────┴────────┐
▼ ▼
Stream Consumers Future Sink Layer
(processors) (DB / S3 / OpenSearch)
- Async non-blocking logging
- Redis Streams backbone
- Minimal overhead on critical paths
-
Every decision is logged
-
Full traceability of:
- user actions
- policy decisions
- system events
- Safe for large-scale distributed compute
- Designed for workflow engines like TES
- Handles thousands of concurrent events
- Redis Streams allow replayable audit logs
- Consumer pipeline ready for scaling
Common events tracked:
auth_loginauth_failediam_cache_hitiam_cache_misspolicy_decisiontes_submittes_complete
pip install redis pydantic fastapiREDIS_URL=redis://localhost:6379
AUDIT_STREAM=audit:events
SERVICE_NAME=omnibioai-service
AUDIT_MAXLEN=1000000from audit.logger import AuditLogger
from audit.models import AuditEvent
from audit.config import AuditConfig
logger = AuditLogger()await logger.log(
AuditEvent(
service="auth-service",
event_type="auth_login",
user_id="user_123",
action="login",
decision="success",
)
)from fastapi import APIRouter
from audit.logger import AuditLogger
router = APIRouter()
logger = AuditLogger()
@router.post("/login")
async def login():
await logger.log(...)Read audit events:
from consumers.stream_reader import StreamReader
reader = StreamReader()
data = reader.read()
print(data)You can extend consumers for:
- anomaly detection
- security alerts
- analytics dashboards
- compliance reporting
Audit failure must NOT break system flow.
Redis Streams ensure immutable audit history.
Works across:
- local dev
- HPC clusters
- cloud microservices
Every event supports:
- trace_id
- user_id
- service context
This service integrates with:
- omnibioai-auth
- omnibioai-iam-client
- omnibioai-policy-engine
Planned enhancements:
- OpenSearch / PostgreSQL sink
- Real-time security dashboard
- AI-based anomaly detection
- Policy decision graph visualization
- Compliance reporting engine
MIT