Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
Tomer_Sole
Mentor
Mentor
Jump to solution

What are the features inside SmartConsole which contain integrated audit logs?


How can seeing audit logs next to the various views in SmartConsole assist with decision-making?

(Please do not confuse this thread with What are the features inside SmartConsole which contain integrated log views?  )

1 Solution

Accepted Solutions
Tomer_Sole
Mentor
Mentor

The Audit Logs pane appears in the bottom of:

  • Access Control rulebases - all changes for the selected rule.
  • Gateways and Servers view - all audit logs that were produced for the provisioning tasks performed on the selected device.
  • Revisions view (from "Manage & Settings") - all changes for the selected revision.
    audit-logs-for-revisions.png
  • Install Policy dialog - all changes on the selected Gateway (or all the gateways) since the last policy installation.

install-policy-changes.png

  • Installation History view (from "Access Tools" or "Threat Tools" inside Security Policies) - all changes between 2 policy installations on the selected gateway.

installation-history.png

  • Inside Access Control rulebases, the user can select Actions-->History to see all revisions and audit logs of the current layer. This view also allows partial revert of the changes (see How do you rollback an old policy? )

"Rule Content History":

In Access Control layers, You can also select a rule and see the history of the rule as well as the history of all the objects that are used inside of its cells. This feature is called content history. In R80.10 the name will change to rule objects history.

get-content-history.png

content-history.png

View solution in original post

3 Replies
Tomer_Sole
Mentor
Mentor

The Audit Logs pane appears in the bottom of:

  • Access Control rulebases - all changes for the selected rule.
  • Gateways and Servers view - all audit logs that were produced for the provisioning tasks performed on the selected device.
  • Revisions view (from "Manage & Settings") - all changes for the selected revision.
    audit-logs-for-revisions.png
  • Install Policy dialog - all changes on the selected Gateway (or all the gateways) since the last policy installation.

install-policy-changes.png

  • Installation History view (from "Access Tools" or "Threat Tools" inside Security Policies) - all changes between 2 policy installations on the selected gateway.

installation-history.png

  • Inside Access Control rulebases, the user can select Actions-->History to see all revisions and audit logs of the current layer. This view also allows partial revert of the changes (see How do you rollback an old policy? )

"Rule Content History":

In Access Control layers, You can also select a rule and see the history of the rule as well as the history of all the objects that are used inside of its cells. This feature is called content history. In R80.10 the name will change to rule objects history.

get-content-history.png

content-history.png

Martin_Raska
Advisor
Advisor

Hi Tomer,

why there is missing rule number in audit logs when user create a new rule? There is only rule comment or name and when admin create the rule without it, how can I find which rule it was? I can only do "where used" with used object.

0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events