OCI Audit Analysis

The OCI Audit Analysis dashboard provides in-depth analysis of the user activity, resource creation, policy changes, resource creation and more based on OCI Audit Log records. The Cloud administrators and security analysts can use this dashboard for building security monitoring environment, evaluating security posture, and ensuring compliance.

Ingest the logs using the Add Data wizard which is available in Compass in Logging Analytics.

Here's the list of widgets displayed in the OCI Audit Analysis dashboard:

Widget Description
Active User Count Active User Count
Total Audit Records Total Audit Records
User Activity User Activity
Activity Distribution by Compartments Activity Distribution by Compartments. See scope filter settings.
Activity Trend Activity Trend Count by Log Source
Active Users Per Hour Active Users Per Hour
Post, Put Actions by API Endpoint Post, Put Actions by API Endpoint
Actions by Path (API) Actions by Path (API)
User and Activity Correlation User and Activity Correlation
Audit Events by Type Audit Events by Type
User Agents User Agents