Settings: Audit Logs
Focus
Focus
Strata Cloud Manager

Settings: Audit Logs

Table of Contents

Settings: Audit Logs

Learn how to view audit logs.
Where Can I Use This?
What Do I Need?
  • Strata Cloud Manager
  • Any of the following predefined roles: Auditor, Business Admin, Data Security Administrator, Deployment Admin, IAM Administrator, Multitenant IAM Administrator, Multitenant Manage User, Multitenant Monitor User, Multitenant Superuser, Network Admin, Security Admin, SOC Analyst, Superuser, Tier 1 Support, Tier 2 Support, View Only Admin
Under
Settings
Audit Logs
Audit Logs
, you can see a list of actions initiated by users of
Strata Cloud Manager
. You can use these logs for compliance and troubleshooting purposes.
You can
Filter
on date range, user ID, user name, category, actions, or action status.
Export
the compressed file to download the logs in .csv format. Set your log retention time in the
Settings
The following are available column titles in the audit logs.
Title
Description
User ID
The email address of the person logged into the tenant.
User Name
The name of the person associated with the email address who made the change.
Category & Subcategory
The resource category and subcategory that generated the audit log.
Account Type
User or Service.
Action
The action taken by the person who made the change, such as: login or logout.
Action Status
The status of the action, such as successful.
Description
The description of the action, such as login successful for a login action.
Timestamp
When the action was completed.
Impacted Resource Details
This field displays further details about the impacted resource. It could contain a link to a
Strata Cloud Manager
page, a link to an external page, or plain text that provides more details in addition to the description field. For example, with the Security Exception Checks category, the link for the
Exceptions Page
is a shortcut to the Security Posture Settings.
The following are supported audit log categories and subcategories.
Category
Subcategories
Alerts and Incidents
  • Alert Notification Rules
  • Case Creation Rules
  • Detection Rules
Device Associations
  • Device
  • Device Associations
Feature Adoption Recommended Services
Feature Adoption Zone Roles
Federation
  • IDP
  • Federation Mapping
  • Owner
Global AST Setting
  • Global AST State Change
Identity and Access
  • Login
  • Logout
  • Access Policy
  • Custom Role
  • Federation
  • IP Restriction Policy
  • Service Account
Metadata Export
  • File download
Security Checks
  • Checks
  • Security Check Exceptions
SFDC Ticket Creation
  • Create AST Ticket
  • Create Ticket
  • Fetch PST Ticket
  • Fetch Ticket
Subscription
  • Activation
  • Deployment profile
  • Subscriptions
Tenants
  • Acquisition
TFS Upload
  • File Upload
For audit logs related to IDP Federations, look in the
Identity Federations
History
tab.

Notification Rules

Where Can I Use This?
What Do I Need?
  • Strata Cloud Manager
  • Superuser or Multitenant Superuser role
The
Settings
Audit Logs
Notification Rules
tab provides you with the management of your audit log notification rules. You can configure email notifications for audit log records. Audit log records corresponding to the criteria in the notification rules are sent by email to the provided email address. Three types are supported: immediate, once in four hours, or daily.

Recommended For You