Skip to main content

Audit Logs on Zenconsole

Published on:
.
2 min read

Audit Logs provide a centralized view of administrative activities across Zenconsole, helping organizations maintain visibility into changes made within their environment. In mission-critical and security-sensitive deployments, understanding what changes were made, who made them, and when they occurred is essential for maintaining operational integrity and accountability.

Figure 1. Audit Logs Page

To support this need, Audit Logs records and reports administrative actions performed by Zenconsole users, creating a comprehensive history of activity across the platform. The feature captures a wide range of events, including policy creation, modification, and deletion, configuration updates, user and administrator management, group administration, and the addition or removal of gateways and endpoints.

By maintaining a detailed record of these operations, Audit Logs feature enables security and IT teams to review historical activities, investigate configuration changes, support compliance requirements, and improve accountability across the organization. Through a centralized audit log, administrators can quickly identify relevant events, understand how their environment has evolved, and maintain greater control over their Zenarmor deployment.

Accessing Audit Logs

Audit Logs can be accessed through the Notifications panel in Zenconsole. This section provides a centralized view of administrative activities and recorded user actions across the platform.

To access Audit Logs, follow the steps below:

  1. Open your browser and navigate to Zenconsole.

  2. Sign in using your Zenconsole credentials.

  3. Select the organization whose audit records you want to review.

  4. Click the Notifications icon located in the upper-right corner of the Zenconsole interface.

  5. The All Notifications page opens by default.

  6. Select the Audit Logs tab to view administrative activity logs.

    Figure 2. Opening Audit Logs from the Notifications panel

After selecting the Audit Logs tab, the Audit Logs page displays recorded administrative activities and system events across your Zenarmor environment.

From this screen, administrators can quickly:

  • Review when an action occurred.
  • Identify the severity level of an event.
  • See what action was performed.
  • View detailed event descriptions.
  • Determine which user initiated the action.
  • Track the source IP address associated with the event.
  • Filter audit records to find specific activities.
  • Adjust the time range to focus on a particular period.
  • Export audit records for reporting and compliance purposes.

These capabilities help security and IT teams investigate changes, monitor administrative activities, and maintain accountability across the organization.

Filtering Audit Records

Audit Logs feature includes advanced filtering capabilities that help administrators quickly locate specific events and focus on relevant activities. Filtering audit records makes it easier to investigate administrative changes, review user activities, and identify relevant events within large audit datasets.

To add a filter, follow the steps below:

  1. Sign in using your Zenconsole dashboard.

  2. Select the organization whose audit records you want to filter.

  3. Click the Notifications icon located in the upper-right corner of the Zenconsole interface.

  4. Select the Audit Logs tab.

  5. Click the Filter button located at the top of the page.

    Figure 3. Filtering Audit Records

  6. In the Add Filter dialog, select the desired filter type.

  7. Choose the appropriate comparison operator.

  8. Enter the filter value.

  9. Click Add to apply the filter.

    Figure 4. Adding Filters

Audit records can be filtered using various criteria, including:

  • Severity – Filter events by severity level.
  • Source – Display events generated by a specific source.
  • Action – Search for specific administrative actions.
  • User Email – View activities performed by a particular user.
  • IP Address – Locate events associated with a specific IP address.
  • Entity (by field) – Filter records related to a particular entity.

Multiple filters can be applied simultaneously to further refine results and help administrators focus on the most relevant audit records.

Sorting Audit Records

You may sort audit records on the Audit Logs page by clicking a column header. To sort records in ascending or descending order, click the desired column header again.

Audit records can be sorted by Time, Severity, Action, Description, User, and IP Address.

Setting a Time Range

Audit Logs allows administrators to narrow the displayed audit records to a specific time period, making it easier to investigate events and review administrative activities within a defined timeframe.

To set a time range, follow the steps below:

  1. Sign in using your Zenconsole dashboard.

  2. Select the organization whose audit records you want to review.

  3. Click the Notifications icon located in the upper-right corner of the Zenconsole interface.

  4. Select the Audit Logs tab.

  5. Click the Time Range selector located in the upper-right corner of the page.

    Figure 5. Setting a Time Range

  6. Select one of the available predefined time ranges from the dropdown menu.

  7. The Audit Logs page automatically updates to display records that match the selected time period.

For more granular searches, administrators can use the Custom Range option to define a specific time period.

To configure a custom time range, follow the steps below:

  1. Click the Time Range selector.

  2. Select Custom Range from the dropdown menu.

  3. Specify the desired start and end date and time.

  4. Click Apply to update the displayed audit records.

    Figure 6. Setting a Custom Time Range

Using a custom time range helps administrators focus on activities that occurred during a specific investigation, audit, or operational review period.

Exporting Audit Records

Audit records can be exported from the Audit Logs page for reporting, auditing, and compliance purposes.

To export audit records:

  1. Sign in using your Zenconsole dashboard.

  2. Select the organization whose audit records you want to review.

  3. Click the Notifications icon located in the upper-right corner of the Zenconsole interface.

  4. Select the Audit Logs tab.

  5. Click the Download button located in the upper-right corner of the page.

    Figure 7. Exporting Audit Records

  6. Select the CSV export format.

  7. The audit records will be downloaded to your device.

Display Preferences

The Audit Logs page includes additional display options to improve the audit record viewing experience.

Click the Settings icon located in the upper-right corner of the page to configure how timestamps are displayed. Administrators can choose between 12-hour and 24-hour time formats based on their preferences.

The selected timezone is also displayed within the settings menu to help ensure audit records are interpreted correctly.

Figure 8. Configuring Audit Record Display Preferences

Refreshing Audit Records

To refresh the displayed audit records, click the Refresh icon located in the upper-right corner of the Audit Logs page.

Refreshing the page retrieves the most recent audit records and updates the displayed results without requiring administrators to leave the Audit Logs page.

Figure 9. Refreshing Audit Records