The auditing system in Ignition records actions originating from the Gateway, Perspective and Vision projects. This page lists which actions are logged by the auditing system.
A description of the audit table can be found on the Ignition Database Table Reference page.
Gateway Audit Actions
The following actions are recorded in an audit log when the Gateway has a Gateway Audit Profile is configured.
Project System
The following project-based actions are tracked by the auditing system.
- Project Property changes made from the Designer.
- Project setting changes made from the gateway's web interface.
- Creating or deleting a project.
- Saving a project (action recorded as "project update").
Gateway Systems
In addition, project files on the Gateway's file system are closely monitored. If a user or third-party system modifies any of the project files, an entry will be recorded in the auditing system. The following Gateway-level actions are recorded in an audit log when the Gateway has a Gateway Audit Profile is configured.
Modules
- Installing modules on the Gateway.
- Restarting a module.
- Deleting a module.
Gateway - General
Gateway - Restore
- Restoring the Gateway from a Gateway backup. Specifically, the Gateway will log that it was asked to before a restore, then perform the restoration.
Licensing Changes
- Activating a license.
- Unactivating a license.
- Updating a license.
Redundancy
- Saving after making any changes to the Redundancy Settings page.
Web Server Page
- Installing or removing a security certificate.
- Making changes to the Web Server Settings page.
Gateway Network
- Saving changes to Gateway Network General Settings .
- Creating, editing, or deleting outgoing connections.
- Approving incoming connections.
Email Settings
- Creating, editing, or deleting an SMTP Profile.
Audit Profile
- Creating, editing, or deleting an Audit Profile.
User Sources
- Creating, editing, or deleting a User Source.
- Creating, editing, or deleting a user.
- Creating, editing, or deleting a role.
- User logins against the user source.
- User logout against the user source.
- User Lockout Events will also be recorded. Note that the audit log will record only the initial lockout event, rather than each failed
authorization Service Security
- Editing and saving a policy.
Identity Providers
- Creating, editing, or deleting an Identity Provider configuration.
- Making changes to a User Attribute Mapping.
- Creating, editing, or deleting a User Grant.
- Saving changes on a Security Level Rule.
Security Levels
- Creating, editing, and deleting security zones
Security Zones
- Creating, editing, and deleting security zones
Database - Connections
- Creating, editing or deleting a database connection.
Database - Drivers
- Creating, editing or deleting a JDBC driver
- Creating, editing or deleting a Translator
Store and Forward
- Creating, editing or deleting a Store and Forward engine.
Alarming - General
- Saving changes on the Alarming General settings page.
Alarming - Alarm Journal
- Creating, editing or deleting an Alarm Journal Profile
Alarming - Notification
- Creating, editing, or deleting an Alarm Notification Profile.
Schedules
- Creating, editing or deleting a schedule.
- Creating, editing or deleting a holiday.
- Creating, editing or deleting a Realtime Tag Provider
- Creating, editing or deleting a Historical Tag Provider.
OPC Client Connections
- Creating, editing or deleting an OPC connection.
OPC UA - Device Connections
- Creating, editing, or deleting a device connection (editing/saving a device connection configuration without making any changes will be recorded as an edit).
- Editing a Modbus address mapping via gateway interface on Modbus device connections.
- Editing DNP3 Aliased Points via gateway interface on DNP3 device connections.
- Editing tags via gateway interface on Omron NJ device connections.
- Adding FINS tags via gateway interface on Omron FIN device connections.
OPC UA - Server Settings
- Editing the OPC UA Settings page.
Enterprise Administration
- Configuring a gateway to be either an Agent or Controller.
Enterprise Administration - Event Thresholds
- Changes made to Event thresholds.
Enterprise Administration - Controller Settings
- Making changes to the Controller Settings page, including uninstalling the controller.
Enterprise Administration - Agent Settings
- Making changes to the Agent Settings page, including uninstalling the agent.
Enterprise Administration - Agent Management
- Creating, editing, deleting an Agent Group.
Enterprise Administration - License Management
- Adding or removing a license from the License Management page.
Enterprise Administration - Agent Tasks
- Creating, editing, or deleting an agent task
- Separate records are taken each time a task executes.
Sequential Function Charts
- Changes made to the SFC Settings page.
Add a Record Manually
- You can also add a record into the audit profile using the function system.util.audit.
Remote Gateway Tag Writes
- Actions on tags from remote servers are now recorded in the audit log. The 'System' column now shows the originating gateway name. Note that 'Actor', 'Host', and 'Context' will appear unknown for these records.