Skip to main content

Access log

The Access log page shows single sign-on login activity and administrative actions, such as creating and managing identity provider (IdP) profiles, in Imply Lumi Enterprise. Use access log data to troubleshoot failed logins and audit profile changes.

Lumi retains access log data for 31 days.

Prerequisites

To view the access log, you need a Lumi user with the Admin role. For information on roles and permissions, see Manage roles.

View the log

To view the access log:

  1. Click Access in the sidebar.
  2. Click the Access log tab.

Access log

To change the time frame, click the date drop-down and select an option. To specify a custom time frame, click Fixed range, select start and end dates, and click Apply.

The Access log page displays the following information:

  • Time: Timestamp when the event occurred, displayed in your local time zone
  • Event: Event type
  • Status: Event status
  • User: User who triggered the event
  • Identity provider profile: Name of the IdP used to authenticate

To view event details, click the event. The event details pane opens.

Access log details

The pane includes the following additional fields:

  • IP address: Client IP address
  • Request ID: Unique identifier associated with the event

Depending on the event type, the pane may also display:

  • Display name: Updated name of the IdP profile
  • Groups: Groups from the IdP assertion
  • Mapped roles: Lumi roles applied after role mapping
  • Enabled: Whether the IdP profile is enabled
  • IdP type: Updated IdP type
  • Issuer URL: Updated issuer URL
  • Certificate: Whether a new IdP certificate was submitted
  • Reason: Reason for failure

Learn more

See the following topics for more information: