User Logs
In many cases, an Administrator is interested in the login/logout activity of users. HySecure provides logs specific to such events. To get to these kinds of logs, follow the steps:
- Open the Management console and expand LOGGING
- Click on User Logs sub-menu
- All activity logs related to a user login/logout, are displayed on this page. The different fields displayed are described below:
# | Column | Description |
---|---|---|
1 | Login Date/Time | This represents the date and time on which the user logged in to HySecure Gateway. |
2 | Logout Date/Time | This represents the date and time when the user logged out. If the user is still logged in, "-" is displayed |
3 | Total Active Time | |
4 | Total Session Time | This represents the total time for which the user was connected to the Gateway |
5 | User Name | This represents the name of the user whose activity is logged |
6 | Display Name | This represents the Display Name of the user whose login/logout activity is logged |
7 | Domain | This represents the HySecure Domain to which the user has connected to. |
8 | Authentication Domain | This represents the Authentication Domain to which the user has connected to. |
9 | Authentication Server | This represents the authentication server through which the user is authenticated |
10 | WAN IP Address | This represents the WAN IP Address i.e. the public IP from which the user has connected to the Gateway. Note that if the user's machine is behind a NAT'ed device, then this column would indicate the |
11 | MAC ID | This represents the MAC ID of the system from which the user activity is initiated. If the user has initiated the activity from a browser, then this filed value is set to "-" |
12 | Client IP Address | This column lists the IP Address of the client device from which the user has logged in to the Gateway. Note that if the device is behind a NAT'ed device, then this column would indicate the private IP of the device where as the column "WAN IP Address" will indicate the Public IP address from which the user has connected to the Gateway. |
13 | Client Type | This indicates the type for client from which theuser has connected to the Gateway. The client type will be either a native client or HyLite portal depending on whether the user is connecting from a client OR from the portal, respectively |
14 | Token Type | This represents the token type used as the second factor of the 2FA (2 FActor-Authentication). The values can be Email, ||SMS etc |
15 | Device Profile Name | This represents the device profile which was matched, while connecting to the Gateway |
16 | Source Node |
User Logs Display Management
Controlling Number of Entries Per Page
On the drop down against the label "Show", select the number of entries as 20, 50 or 100 to display the corresponding number of log entries on the page. For viewing subsequent log entries, click on link "Next" which is available at the end of the page. The link "Previous" at the end of the page will take you to the previous list of entries. The link "Latest" will take you to the latest set of entries.
Log File Size
The current log file size is displayed against the label "Log file size:".
Download Logs
Click on the link "Download Logs" to download the latest User logs i.e. the active log file, which can be displayed through the "User Logs" sub-menu, in a csv format. The downloaded file name is "UserLog.csv", if no such file name exists in the download folder.
A maximum of 30,000 latest log entries can be downloaded.
Filter Logs
The logs can be filtered on any text in any of the columns by entering the search string in the text box for "Search all columns:" and clicking on the "Search" button