Aruba Central Online Help

Viewing Audit Trail in the Standard Enterprise Mode and MSP Mode

The Audit Trail page in the Standard Enterprise Portal shows the total logs generated for all the device management, configuration, and user management events triggered in Aruba Central. You can search or filter the audit trail records based on any of the following columns:

  • Occurred on (Custom Range)
  • Username
  • IP Address
  • Category
  • Description
  • Target

To view the audit trail log details in Aruba Central, perform the following steps:

  1. In the Network Operations app, select one of the following options:
    • To select a group or all devices in the filter, set the filter to Group. For all devices, set the filter to Global.

      The dashboard context for the selected filter is displayed.

    • To select a device in the filter:
      1. Set the filter to Global.
      2. Under Manage, click Devices, and then click Access Points, Switches, or Gateways.

        A list of devices is displayed in the List view.

      3. Click a device listed under Device Name.

        The dashboard context for the device is displayed.

  2. Under Analyze, click Audit Trail.

    The Audit Trail table is displayed with the following details:

    • Occurred On— Timestamp of the audit log. Use the sort option to sort the audit logs by date and time. Use the filter option to select a specific time range to display the audit logs.
    • IP Address—IP address of the client device.
    • Username—Username of the admin user who applied the changes.
    • Target—The group or device to which the changes were applied.
    • Category—Type of modification and the affected device management category.
    • Description—A short description of the changes such as subscription assignment, firmware upgrade, and configuration updates. Click to view the complete details of the event. For example, if an event was not successful, clicking the ellipsis displays the reason for the failure.

    To customize the Audit Trail table, click the eclipses icon to select the required columns, or click Reset to default to set the table to the default columns.

Viewing Audit Trails in MSP

The Audit Trail logs are displayed for the following types of operations in the MSP:

  • Addition, modification, and deletion of tenant accounts
  • Addition, modification and deletion of users associated with a tenant account
  • Subscription assignment to devices
  • Modification of groups associated with a tenant account
  • Configuration push, override , and updates for the devices associated with a tenant account
  • Addition, modification, and deletion of MSP admin users
  • License reconciliation

The Audit Trail page in the MSP displays the following information:

Table 1: Audit Trail Pane in the MSP

Data Pane Content

Description

Occurred On

Time stamp of the events for which the audit trails are shown. Use the filter option to select a specific time range to display the events.

Username

The username of the admin user who applied the changes.

IP Address

IP address of the client device.

Category

Type of modification and the affected device management category. For more information, see the next section.

Target

The group or device to which the changes were applied.

Description

A short description of the changes such as subscription assignment, firmware upgrade, and configuration updates.

Classification of Audit Trails

The audit trail is classified according to the type of modification and the affected device management category. The category can be one of the following: