View Audit Logs
Audience: Immuta users with the
AUDIT
permission and Data OwnersContent Summary: This page instructs how to view and filter audit logs.
Deprecation notice
Support for the audit page has been deprecated. Instead, pull audit logs from Kubernetes and push them to your SIEM.
View All Audit Logs
To view all of the audit logs, click on the Audit icon displayed in the left side panel (only users with permission to access the page will see the icon).
View by Purpose
To filter the audit logs by purpose,
Start typing the name of your desired purpose and select one of the auto-completed results beneath the text box.
Note: If a list of purposes does not display, then no purposes matching the text exist.
Click the Filter button. Relevant records will display in the right panel.
To remove the filter and display all results, click the Clear button.
View by blobId
To filter by blobId, type in the exact blobId in the filter box in the left panel.
Click the Filter button. Relevant records will display in the right panel.
To remove the filter and display all results, click the Clear button.
View by Remote Query ID
To filter by remote query id, type in the remote query id in the filter box in the left panel.
Click the Filter button. Relevant records will display in the right panel.
To remove the filter and display all results, click the Clear button.
View by User, Record Type, Project, Data Source, or Timestamp
To filter by user, record type, project, data source or the entry timestamp, just click one or more of the corresponding facets listed on the left side of the center pane.
Sort in Ascending or Descending Order
To sort entries in ascending (oldest first) or descending (latest first) order, click the corresponding tabs along the top of the center pane.
View More than 50 Entries
To view more than 50 entries per page, click the desired number in the upper right of the center pane.
To get back to all of the log entries, simply click on the Audit icon displayed in the left side panel.
Last updated