7.3.7 Unrestricted Audit Report

This report is available in the Reports category, and provides a list of all audit actions stored in the MyID audit trail. No scope is enforced; you can view a list of the actions carried out by all operators for all target people.

This report is available only if you have been granted access. See section 7.1, Granting access to reports for details.

7.3.7.1 Search criteria

You can use the following search criteria:

Field

Description

After

Select a date. Only audited actions after this date are returned.

Before

Select a date. Only audited actions before this date are returned.

Operation

Select the MyID operation from the drop-down list.

Operator (contains)

Type some characters of the logon name of the operator who carried out the action.

You cannot use wildcards in this field; it automatically uses fuzzy matching.

Person (contains)

Type some characters of the logon name of the person who was the target of the action.

You cannot use wildcards in this field; it automatically uses fuzzy matching.

Audit Status

Select the status of the audit; for example, you can search for only failures.

Audit Type

Select the type of audit; for example, Audit, Error, or Trace.

By default, the report displays all types of audit. As Trace entries are listed on the Audit Trace tab of the View Audit screen for their parent Audit entry, you are recommended to select Audit in the Audit Type search criterion, and drill down into the detailed traces from the View Audit screen as required.

Audit ID

Type the ID of the audit entry. You can use wildcards.

You can also select the following Additional search criteria:

Field

Description

Operator (Logon Name) (historic)

Type the logon name of the operator who carried out the action. You can use this if the operator's logon name has changed to search for actions carried out under the previous logon name. You can use wildcards.

Note: Using the Operator (contains) field instead searches for the current logon name, but returns all audited actions carried out under all of the operator's logon names.

Person (Logon Name) (historic)

Type the logon name of the person who was the target of the action. You can use this if the person's logon name has changed to search for actions carried out for the previous logon name. You can use wildcards.

Note: Using the Person (contains) field instead searches for the current logon name, but returns all audited actions carried out for all of the person's logon names.

Client Identifier

The client identifier may have been captured for the operator, depending on your system configuration. You can use wildcards.

See the Logging the client IP address and identifier section in the Administration Guide for details.

IP Address

The IP address (like the client identifier) may have been captured for the operator, depending on your system configuration. You can use wildcards.

7.3.7.2 Report fields

The report contains the following fields:

Field

Description

Timestamp

The date and time of the action.

End Timestamp

The date and time when the action ends.

Operation

The MyID operation that was carried out.

Operator

The logon name of the operator who carried out the action.

Person

The logon name of the person who was the target of the action.

Message

The message stored in the audit trail for the action.

Audit Status

The status of the action; for example, Success or Failure.

Audit Type

The type of audit; for example, Audit, Error, or Trace.

If you have role permissions to the View Full Audit feature, you can click on an entry in the report to display the View Audit screen. See section 15.1, Viewing audit details for more information. This also provides information, on the Attribute Changes tab, about the fields that have changed, as well as their previous and new values.

7.3.7.3 Running the report through the API

The Unrestricted Audit Report has the report ID 290015.

See section 7.2.2, Running reports through the MyID Core API for more details of running reports through the MyID Core API.

7.3.7.4 Further information

See section 15, Working with the audit trail and the The audit trail section in the Administration Guide.