For longer log retention, contact support@vantage.sh.
Access and Filter Audit Logs
You can access audit logs from the Settings UI or directly from a Cost Report or Virtual Tag.- From the Settings UI
- From a Cost Report
- From a Virtual Tag
1
From the top navigation, select Settings.
2
In the left navigation, under General Settings, select Audit Logs.
Filter Audit Logs
1
On the Audit Logs screen, a table is displayed that contains a row for each audit log event. You can complete the following actions on this screen:
- Filter audit logs by Event (create, update, destroy), Object Type (Cost Report, Dashboard, Canvas, Virtual Tag, Segment, Billing Rule, Integration Delegations, MSP Invoice, or FinOps Agent Cost Recommendation action), Object (the object’s name), Workspace, User (or Team when using service tokens), and Source (the console or API).
- Filter audit logs based on a date range, up to 24 months.
- View more details for an audit log.
Business Metrics: When you assign or remove a Business Metric from a Cost Report, or change Business Metric settings (such as label filters or unit scale), these changes are tracked in audit logs under the associated Cost Report. Changes to the default forecast selection (choosing which Business Metric forecast to display) are also tracked as updates to the Cost Report.
2
Select any row in the table to view more details. On the details screen, changes are displayed in a GitHub-style diff format with color-coded additions and removals, making it easy to see exactly what was modified.
FinOps Agent Audit Logs
When the FinOps Agent takes action on savings recommendations, detailed audit log entries are created. FinOps Agent actions are visually distinguished in the audit log table with a different object icon, making it easy to identify agent actions at a glance. Within the Vantage Audit Logs, you can see the following information for each FinOps Agent action:- Time the recommendation was provided: When the Agent first identified and presented the savings opportunity
- Time the recommendation was approved: When a user approved the remediation action (if Owner Approval mode is enabled)
- Vantage User that approved the remediation: The user who approved the action (only applicable in Owner Approval mode)
- What Resources were altered: The specific resources that were modified as part of the recommendation remediation
- Time the action was taken in the cloud provider: When the action was executed in your cloud environment
Canvas Audit Logs
Canvas create, update, and delete actions are tracked in Audit Logs. Updates include changes to the Canvas title and prompt. Generated table output is not tracked as a user-editable configuration change.Integration Delegation Audit Logs
All additions and removals of integration assignments to Managed Accounts from the Partner Integrations page are logged in the Audit Log of the Management Account. An audit log entry is created for each integration that was modified. The log entry includes the following details:- Integration name: The name of the integration that was modified
- Managed Accounts added: Which Managed Accounts were newly assigned to the integration
- Managed Accounts removed: Which Managed Accounts were unassigned from the integration
- Current Managed Accounts: The complete list of Managed Accounts connected to the integration after the change
Audit Log Metadata and Details
All audit logs contain the following object metadata at the top of the log.When actions are performed using a service token (Team token), the audit log displays Team and Team Role fields instead of User and User Role. The Source field will show API to indicate the action was performed via the API using a service token. The team name is displayed in both the Team and Team Role fields.
Object Details
Two sections are displayed to indicate what has been changed or not changed on the object. These tables list the values updated by the user. When a value or setting changes, both the previous and new values appear in the object details. In the example below, the date binning, date interval, and report groupings have all been updated.
Share Audit Logs
You can share an audit log with other Vantage users. The log detail page has a unique URL that allows you to share log events with any authenticated Vantage user who has access to audit logs (i.e., Owners). A URL looks similar to:https://console.vantage.sh/settings/audit_logs/adt_lg_123a4f5a6c7dab94.
