Audit Record Contents
Every log message contains this information:
|
Field |
Meaning |
|---|---|
|
Time |
Time the event was recorded, including the UTC offset. |
|
Controller Type |
The name of the controller type. |
|
Application |
The controller binary that generated the log message. |
|
Source IP |
IP address associated with the session, when available. |
|
Event |
Event category or action type. |
|
User |
User identity associated with the session or action, when available. |
|
Result |
Whether the operation succeeded or failed. |
|
Details |
Additional information describing the event. |
- When troubleshooting or reviewing system history, select the audit log that corresponds to the activity of interest.
- Events can be correlated using this information to help identify the sequence and outcome of actions performed on the controller:
- Operation result
- Source IP address
- Timestamp
- User account
Example
2026-09-10T10:25:30.804289-07:00 kas-pcmm2g sinope: SRC_IP=192.168.0.102 EVENT=AUTH_LOGIN_SUCCESS USER=administrator RESULT=SUCCESS DETAILS="Login succeeded."
Figure 1 shows the log message breakdown relating to the information listed in the table.
Figure 1: Log message information breakdown
Example: Audit Records
These KAS audit log messages are an example of the contents found in the KAS audit log files.
Exact wording may vary by software version.
2026-09-10T16:05:46.703347+00:00 kas-pcmm2g sinope: SRC_IP=192.168.1.103 EVENT=AUTH_LOGIN_SUCCESS USER=administrator RESULT=SUCCESS DETAILS="Login succeeded."
2026-09-10T16:08:32.656378+00:00 kas-pcmm2g sinope: SRC_IP=192.168.1.103 EVENT=AUTH_LOGIN_FAILURE USER=administrator RESULT=FAILURE DETAILS="reason=invalid password.
2026-09-10T16:07:22.147979+00:00 kas-pcmm2g sinope: SRC_IP=192.168.1.103 EVENT=AUTH_FIRMWARE_UPDATE USER=administrator RESULT=SUCCESS DETAILS="firmware_file='KAS-PCMM2G-Cx-08-OS-1.0.0.00471-RT-5.01.0.98835.zip'"
2026-09-10T16:53:41.787538+00:00 kas-pcmm2g sinope: SRC_IP=192.168.1.103 EVENT=DEVICE_REBOOT USER=administrator RESULT=SUCCESS DETAILS="Controller reboot request received."
2026-09-10T09:54:25.668966-07:00 kas-pcmm2g sinope: SRC_IP=192.168.1.103 EVENT=KAS_IDE_LOGIN USER=KAS_IDE RESULT=SUCCESS DETAILS="KAS IDE login."
2026-09-10T09:54:29.670906-07:00 kas-pcmm2g sinope: SRC_IP=192.168.1.103 EVENT=AUTH_LOGIN_SUCCESS USER=administrator RESULT=SUCCESS DETAILS="Login succeeded.”
2026-09-10T10:10:10.580810-07:00 kas-pcmm2g sinope: SRC_IP=192.168.1.103 EVENT=DATETIME_TIMEZONE_SET USER=administrator RESULT=SUCCESS DETAILS="Time Zone setting updated successfully: America/Los_Angeles"
2026-09-10T10:04:23.449729-07:00 kas-pcmm2g sinope: SRC_IP=192.168.1.103 EVENT=KAS_APPLICATION_DOWNLOAD_START USER=administrator RESULT=SUCCESS DETAILS="KAS application download started."
Security Note
- Audit logs provide visibility into security-related activity on the controller, including authentication events, configuration changes, and other recorded actions.
- To help protect system security, sensitive authentication credentials such as passwords, private keys, and session tokens are not recorded in audit logs.





