Enabling Audit Logs
By default, audit logs for administrative
level tasks are enabled. To access this, browse the audit log parameters
from Cisco Unified Serviceability.
1. Login to CUCM serviceability
2. Go to Tools>Audit Log Configuration
Accessing Audit Logs
1.
Login RTMT Tool
2.
Connect to CUCM cluster using a user ID
that has the "Standard Audit Log Administration" role
3.
Go to System>Tools>Trace>Trace and Logs Central
4.
Under Trace and Logs Central->Audit
Logs. Double click the folder to start the log collection wizard.
Login info
04/06/2010 11:03:15.295 |LogMessage
UserID :ccmadministrator
ClientAddress :192.168.1.4
Severity :5
EventType :GeneralConfigurationUpdate
ResourceAccessed:CUCMAdmin
EventStatus :Success
AuditDetails : record in table numplan with key field dnorpattern = 2025552222 added
ComponentID :Cisco CUCM Administration
App ID:Cisco Tomcat
Cluster ID: Node ID:iecucm01
UserID :ccmadministrator
ClientAddress :192.168.1.4
Severity :5
EventType :GeneralConfigurationUpdate
ResourceAccessed:CUCMAdmin
EventStatus :Success
AuditDetails : record in table numplan with key field dnorpattern = 2025552222 added
ComponentID :Cisco CUCM Administration
App ID:Cisco Tomcat
Cluster ID: Node ID:iecucm01
No comments:
Post a Comment