A regulated organization must ensure that Elasticsearch configuration changes are tracked and attributable to specific administrators. Which approach best satisfies this change management control?
-
A
Storing elasticsearch.yml in a version-controlled Git repository with mandatory pull request approvals and enforcing infrastructure-as-code for all cluster changes
-
B
Keeping a manual spreadsheet of configuration changes
-
C
Using Elasticsearch Watcher to detect config file modifications
-
D
Restarting the cluster after every change to create a new audit trail