Layer7 API Management

 View Only

 Activity logs and traces are not available for UAM activities like role creation/user allocation

Kuldeep H's profile image
Kuldeep H posted Jul 29, 2024 03:33 AM

The Policy Manager of broadcom layer 7 API gateway has a built-in log viewer that you can use associated log view to refer specific logs but here we have observed that specific logs for user creation/modification/deletion and role allocation(admin/operator/developer) logs are not available if said data are needed. This would be fantastic if such logs also get started to record to enhance this kind of UAM activities.

Ben Urbanski's profile image
Broadcom Employee Ben Urbanski

Hello, Kuldeep.

You can log admin actions, including CRUD on users, groups and roles, by creating a log sink that includes the Audit category.

However, we have found a gap where role assignments are concerned, and we've added a feature to the gateway backlog accordingly.

Kuldeep H's profile image
Kuldeep H

HI Ben,

As you said any updates on having this feature to be added to the gateway backlog.

Also, what about the custom user role to access policy manager basis on the assigned role.

Ben Urbanski's profile image
Broadcom Employee Ben Urbanski

Hello, @Kuldeep H. Support for auditing role assignments will be delivered in the upcoming 11.1.2 release targeted for the end of March (subject to change).

Kuldeep H's profile image
Kuldeep H

Hi Team,

Please confirm whether any update is received?

Ben Urbanski's profile image
Broadcom Employee Ben Urbanski

This has been addressed with enhancements in the recent 11.1.2 release as announced here, https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/ReleaseAnnouncements/0/25566.