APM agent security: Go

The New Relic Go agent default security settings automatically provide security for your APM data to ensure data privacy and to limit the kind of information New Relic receives. You may have business reasons to change these settings.

If you want to restrict the information that New Relic receives, you can enable high security mode. If high security mode or the default settings do not work for your business needs, you can apply custom settings.

Default security settings

By default, here is how the New Relic Go agent handles the following potentially sensitive data:

  • Request parameters: The agent does not capture HTTP request parameters.
  • HTTPS: The agent communicates with New Relic using HTTPS.

High security mode settings

When you enable high security mode, the default security settings are locked so that users cannot change them. In addition:

Custom security settings

If you customize security settings, it may impact the security of your application.

If you need different security settings than default or high security mode, you can customize these settings:

Setting Effects on data security

HighSecurity

boolean

Default: false

To enable high security mode, set this to true and enable high security (V2). This restricts the information you can send to New Relic.

Attributes.Enabled

boolean

Default: true

By default, you are sending some attributes to New Relic. If you do not want to send these default attributes to New Relic, set Attributes.Enabled to false.

Attributes.Exclude

string

Default: (none)

If there are specific attribute keys that you do not want to send to New Relic in transaction traces, identify them using Attributes.Exclude. This restricts the information sent to New Relic.

For examples of how to disable the recording of each attribute, see their descriptions on the Go agent attributes page.

CustomInsightsEvents.Enabled

boolean

Default: true

By default, the agent records events sent to the Insights custom events API using RecordCustomEvent. If you enable high security mode, this is automatically set to false.

For more help

Recommendations for learning more: