Audit export

The per-service audit trail — what each control-plane service was asked to do, by whom, and whether it succeeded. This is not the live syslog tail on the Viewer tab; these are the separate /var/log/ogmaprotect-* logs, fetched one service at a time on demand. Oldest entry first; the newest is at the bottom.

Choose a source, then Fetch.

Unredacted. These lines are exported verbatim — unlike the Viewer tab, nothing is masked on the way out. They carry every username ever submitted to this box including failed sign-ins (a password mistyped into the username field is on disk), and the management source IP of every operator session. Treat a copy of this text as you would the box itself.

20 fetches per hour, per account. This is a separate budget from the Viewer, Remote syslog and Alerts tabs, and it is shared by everyone signed in as the same user. There are 16 sources, so fetching all of them costs most of the hour — fetch what you need and use Filter below, which searches the text already on this page and costs nothing. A refused fetch does not use up a fetch.

Nothing is fetched until you press Fetch — reloading this page or switching tabs costs nothing. Filtering is local to what you already have.


    

The audit export requires JavaScript.