| copyright |
|
||
|---|---|---|---|
| lastupdated | 2019-04-25 | ||
| keywords | IBM Cloud, Activity Tracker, cloud services | ||
| subcollection | cloud-activity-tracker |
{:new_window: target="_blank"} {:shortdesc: .shortdesc} {:screen: .screen} {:pre: .pre} {:table: .aria-labeledby="caption"} {:codeblock: .codeblock} {:tip: .tip} {:download: .download} {:important: .important} {:note: .note} {:deprecated: .deprecated}
{: #cloud_services}
Use the {{site.data.keyword.cloudaccesstraillong}} service to monitor user-initiated activities that change the state of any of the following services in the {{site.data.keyword.IBM_notm}} Cloud: {:shortdesc}
{{site.data.keyword.cloudaccesstrailfull}} is deprecated. As of 9 May 2019, you cannot provision new {{site.data.keyword.cloudaccesstrailshort}} instances, and access to Lite plan instances will be removed. Existing premium plan instances are supported until 30 September 2019. To continue monitoring the activity of your {{site.data.keyword.cloud_notm}} account, provision an instance of the {{site.data.keyword.at_full}}. {: deprecated}
Note: To get information about the regions where a service is available in the {{site.data.keyword.cloud_notm}}, see Services by region.
{: #infrastructure}
Note: For a user to generate {{site.data.keyword.BluVirtServers_short}} and {{site.data.keyword.baremetal_short}} {{site.data.keyword.cloudaccesstrailshort}} events, the user must have access to Infrastructure resources in the {{site.data.keyword.cloud_notm}} console. For more information, see Monitoring {{site.data.keyword.BluVirtServers_short}} and {{site.data.keyword.baremetal_short}} activity with {{site.data.keyword.cloudaccesstrailshort}}.
The following table lists infrastructure services that send events to {{site.data.keyword.cloudaccesstrailshort}}:
| Service | Description | {{site.data.keyword.cloudaccesstrailshort}} events |
|---|---|---|
| {{site.data.keyword.BluVirtServers_short}} | {{site.data.keyword.BluVirtServers}} are scalable virtual servers that are purchased with dedicated cores and memory allocations. They are a great option if you are looking for compute resources, that can be added in minutes, with access to features like image templates. | Events that are generated by {{site.data.keyword.BluVirtServers_short}} |
| {{site.data.keyword.baremetal_long}} | {{site.data.keyword.baremetal_short}} are single-tenant physical servers that provide you performance and control with low-level access to the hardware resources. | Events that are generated by {{site.data.keyword.baremetal_short}} |
| {: caption="List of infrastructure services that send events to {{site.data.keyword.cloudaccesstrailshort}}" caption-side="top"} |
{: #serverless}
The following table lists serverless compute services that send events to {{site.data.keyword.cloudaccesstrailshort}}:
| Service | Description | {{site.data.keyword.cloudaccesstrailshort}} events |
|---|---|---|
| {{site.data.keyword.openwhisk_short}} | {{site.data.keyword.openwhisk_short}} is a polyglot Functions-as-a-Service (FaaS) programming platform based on Apache OpenWhisk that you can use to write lightweight code called actions. |
Events that are generated by {{site.data.keyword.openwhisk_short}} |
| {: caption="List of serverless compute services that send events to {{site.data.keyword.cloudaccesstrailshort}}" caption-side="top"} |
{: #ikcs}
The {{site.data.keyword.containershort_notm}} generates two types of {{site.data.keyword.cloudaccesstrailshort}} events:
-
Cluster management events
- These events are automatically generated.
- These events are automatically forwarded to {{site.data.keyword.cloudaccesstrailshort}}.
- You can view these events through the {{site.data.keyword.cloudaccesstrailshort}} account domain.
-
Kubernetes API server audit events
- These events are automatically generated.
- You must configure your cluster to forward these events to the {{site.data.keyword.cloudaccesstrailshort}} service.
- You can configure your cluster to send events to the {{site.data.keyword.cloudaccesstrailshort}} account domain or to a space domain. For more information, see Sending audit logs.
The following table lists container platform services that send events to {{site.data.keyword.cloudaccesstrailshort}}:
| Service | Description | {{site.data.keyword.cloudaccesstrailshort}} events |
|---|---|---|
| {{site.data.keyword.containerlong_notm}}: cluster management events | These events report on actions like cluster creation, deletion, or update. | Cluster management events |
| {{site.data.keyword.containerlong_notm}}: API server audit events | Kubernetes API server audit events provide chronological information about the sequence of activities that affect a cluster. Each action generates an event | Kubernetes API server audit events |
| {{site.data.keyword.registrylong_notm}} | You can use the {{site.data.keyword.registrylong_notm}} service to store and access private Docker images in a highly available and scalable architecture. | Events that are generated when you interact with the {{site.data.keyword.registrylong_notm}} |
| {: caption="Container events" caption-side="top"} |
{: #platform_cfapps}
The events that are sent by Cloud Foundry applications to {{site.data.keyword.cloudaccesstrailshort}} are listed in the response area of the GET /v2/events, under the body section. The Type field lists all actions that generate an event. For more information, see Events API {:new_window}.
{: #platform_core_integrated}
Core platform services generate {{site.data.keyword.cloudaccesstrailshort}} events that you can view through the {{site.data.keyword.cloudaccesstrailshort}} account domain.
The following table lists core platform services that send events to {{site.data.keyword.cloudaccesstrailshort}}:
| Service | Description | {{site.data.keyword.cloudaccesstrailshort}} events |
|---|---|---|
| Provisioning and managing catalog services for resources that are managed by {{site.data.keyword.iamshort}} (IAM) | You can provision a service instance, rename a service instance, change the plan of a service instance, and remove a service instance. | Events that are generated when you interact with catalog services |
| Provisioning and managing catalog services that are bind to a Cloud Foundry space | You can provision a service instance, rename a service instance, change the plan of a service instance, and remove a service instance. These events are generated for services that are provisioned in a CF space. |
Events that are generated when you interact with catalog services |
| Managing an account | You can sign up for an {{site.data.keyword.IBM_notm}} account by using an existing IBMid, creating a new IBMid, or by using a federated ID. | Events that are generated when you manage an account |
| Managing users | You can view and manage users across the account or organizations that you own or manage. | Events that are generated when you manage users |
| Managing organizations | As an account owner, you can add and manage organizations to the account. | Events that are generated when you manage organizations |
| {: caption="List of core platform actions" caption-side="top"} |
{: #database}
The following table lists database services that send events to {{site.data.keyword.cloudaccesstrailshort}}:
| Service | Description | {{site.data.keyword.cloudaccesstrailshort}} events |
|---|---|---|
| {{site.data.keyword.databases-for-postgresql_full_notm}} | {{site.data.keyword.databases-for-postgresql_full_notm}} is a managed PostgreSQL service that is hosted in the {{site.data.keyword.cloud_notm}} and integrated with other {{site.data.keyword.cloud_notm}} services. | Events that are generated by {{site.data.keyword.databases-for-postgresql_full_notm}} |
| {{site.data.keyword.databases-for-redis_full_notm}} | {{site.data.keyword.databases-for-redis_full_notm}} is a managed service that is hosted in the {{site.data.keyword.cloud_notm}} and integrated with other {{site.data.keyword.cloud_notm}} services. | Events that are generated by {{site.data.keyword.databases-for-redis_full_notm}} |
| {{site.data.keyword.sqlquery_short}} | You can use the {{site.data.keyword.sqlquery_short}} service to run SQL queries (that is, SELECT statements) to analyze, transform, or clean up rectangular data. | Events that are generated by {{site.data.keyword.sqlquery_short}} |
| {{site.data.keyword.databases-for-etcd_full_notm}} | {{site.data.keyword.databases-for-etcd_full_notm}} is a managed etcd service that is hosted in the {{site.data.keyword.cloud_notm}} and integrated with other {{site.data.keyword.cloud_notm}} services. | Events that are generated by {{site.data.keyword.databases-for-etcd_full_notm}} |
| {{site.data.keyword.databases-for-elasticsearch_full_notm}} | {{site.data.keyword.databases-for-elasticsearch_full_notm}} is a managed Elasticsearch service that is hosted in the {{site.data.keyword.cloud_notm}} and integrated with other {{site.data.keyword.cloud_notm}} services. | Events that are generated by {{site.data.keyword.databases-for-elasticsearch_full_notm}} |
| {{site.data.keyword.messages-for-rabbitmq_full_notm}} | {{site.data.keyword.messages-for-rabbitmq_full_notm}} is a managed RabbitMQ service that is hosted in the {{site.data.keyword.cloud_notm}} and integrated with other {{site.data.keyword.cloud_notm}} services. | Events that are generated by {{site.data.keyword.messages-for-rabbitmq_full_notm}} |
| {: caption="List of database services that send events to {{site.data.keyword.cloudaccesstrailshort}}" caption-side="top"} |
{: #devops}
The following table lists DevOps services that send events to {{site.data.keyword.cloudaccesstrailshort}}:
| Service | Description | {{site.data.keyword.cloudaccesstrailshort}} events |
|---|---|---|
| {{site.data.keyword.DRA_short}} | {{site.data.keyword.DRA_short}} is an integration in the {{site.data.keyword.cloud_notm}} open toolchain catalog. | Events that are generated by the {{site.data.keyword.DRA_short}} |
| {{site.data.keyword.contdelivery_short}} | With {{site.data.keyword.contdelivery_short}}, you can build, test, and deliver applications by using DevOps practices and industry-leading tools. | Events that are generated by {{site.data.keyword.contdelivery_short}} |
| {{site.data.keyword.GlobalizationPipeline_short}} | Enables app developers to rapidly release translated applications to global customers. | Events generated by {{site.data.keyword.GlobalizationPipeline_short}} |
| {: caption="List of developer tools that send events to {{site.data.keyword.cloudaccesstrailshort}}" caption-side="top"} |
{: #integrated_dev_svcs}
The following table lists Cloud services that you can use to develop apps and send events to {{site.data.keyword.cloudaccesstrailshort}}:
| Service | Description | {{site.data.keyword.cloudaccesstrailshort}} events |
|---|---|---|
| {{site.data.keyword.dev_console}} | In {{site.data.keyword.cloud_notm}}, you can build enterprise-level mobile and web applications, and take advantage of cloud extensions that are hosted by {{site.data.keyword.cloud_notm}}. You can use the {{site.data.keyword.cloud_notm}} console and command-line tools to build, run, and deploy your apps. You can use the {{site.data.keyword.dev_console}} to create an app by using a starter kit. | Events that are generated by the {{site.data.keyword.dev_console}} |
| {{site.data.keyword.mobilepushshort}} | You can use the {{site.data.keyword.mobilepushshort}} service to send notifications to mobile devices and browsers. Notifications can be targeted to all application users or to a specific set of users and devices by using tags. For every message that you submit to the service, the intended audience receives a notification. | Events that are generated by {{site.data.keyword.mobilepushshort}} |
| {: caption="List of Web and Mobile Cloud services that send events to {{site.data.keyword.cloudaccesstrailshort}}" caption-side="top"} |
{: #platform_integrated_security}
Integrated security services generate {{site.data.keyword.cloudaccesstrailshort}} events that you can view through the {{site.data.keyword.cloudaccesstrailshort}} account domain.
The following table lists core security platform services that send events to {{site.data.keyword.cloudaccesstrailshort}}:
| Service | Description | {{site.data.keyword.cloudaccesstrailshort}} events |
|---|---|---|
| Log in to the {{site.data.keyword.cloud_notm}} | You can log into the {{site.data.keyword.cloud_notm}} by using a password, an API key, an authorization code, or a passcode. As a federated user, you can log in from the command-line interface (CLI) by using either a one-time passcode or an API key. | Events that are generated when a user or app logs in to the {{site.data.keyword.cloud_notm}} |
| Managing account user's Cloud Foundry access | You can grant, revoke, and update Cloud Foundry (CF) permissions to users in the account. | Events that are generated when you manage CF roles in the account |
| {{site.data.keyword.iamlong}} (IAM) | You can use IAM to manage users and roles across the {{site.data.keyword.cloud_notm}} Platform and Infrastructure services. | Events that are generated when you manage IAM policies |
| Managing platform API keys | You can define platform API keys in the {{site.data.keyword.IBM_notm}} Cloud that are associated with a user or a service ID. | Events that are generated when you manage Platform API keys |
| Managing service IDs | You can define service IDs at the account level in the {{site.data.keyword.IBM_notm}} Cloud. | Events that are generated when you manage service IDs |
| Managing access groups | You can define access groups to organize a set of users and service IDs into a single entity that makes it easy for you to assign permissions. | Events that are generated when you manage access groups |
| {: caption="List of core security platform services" caption-side="top"} |
{: #integration}
The following table lists integration services that send events to {{site.data.keyword.cloudaccesstrailshort}}:
| Service | Description | {{site.data.keyword.cloudaccesstrailshort}} events |
|---|---|---|
| {{site.data.keyword.messagehub}} | {{site.data.keyword.messagehub}} is a high-throughput message bus that is built with Apache Kafka. It is optimized for event ingestion into {{site.data.keyword.IBM_notm}} and event stream distribution between your services and applications. | Events that are generated by {{site.data.keyword.messagehub}} |
| {: caption="List of integration Cloud services that send events to {{site.data.keyword.cloudaccesstrailshort}}" caption-side="top"} |
{: #network}
The following table lists network Cloud services that send events to {{site.data.keyword.cloudaccesstrailshort}}:
| Service | Description | {{site.data.keyword.cloudaccesstrailshort}} events |
|---|---|---|
| IBM Cloud Internet Services (CIS) | IBM Cloud Internet Services (CIS) provides a fast, highly performant, reliable, and secure internet service. | Events that are generated by IBM Cloud Internet Services |
| {: caption="List of network Cloud services that send events to {{site.data.keyword.cloudaccesstrailshort}}" caption-side="top"} |
{: #security}
The following table lists security Cloud services that send events to {{site.data.keyword.cloudaccesstrailshort}}:
| Service | Description | {{site.data.keyword.cloudaccesstrailshort}} events |
|---|---|---|
| {{site.data.keyword.cloudaccesstraillong_notm}} | You can use the {{site.data.keyword.cloudaccesstrailshort}} service to monitor {{site.data.keyword.cloudaccesstraillong_notm}}. | Events that are generated by the {{site.data.keyword.cloudaccesstraillong_notm}} service |
| {{site.data.keyword.appid_full_notm}} | You can use {{site.data.keyword.appid_short}} to add authentication to your mobile and web apps, and to protect your back-end resources. | Events that are generated by the {{site.data.keyword.appid_short}} service |
| {{site.data.keyword.cloudcerts_full_notm}} | You can use {{site.data.keyword.cloudcerts_short}} to manage the SSL certificates for your {{site.data.keyword.cloud_notm}}-based apps and services. | Events that are generated by the {{site.data.keyword.cloudcerts_short}} service |
| {{site.data.keyword.keymanagementservicelong}} | You can use the {{site.data.keyword.keymanagementserviceshort}} service to provision encrypted keys for apps across the {{site.data.keyword.cloud_notm}}. | Events that are generated by the {{site.data.keyword.keymanagementserviceshort}} service |
| {{site.data.keyword.security-advisor_short}} | You can use {{site.data.keyword.security-advisor_short}} to help monitor the security of your {{site.data.keyword.cloud_notm}} apps and workloads. | Events that are generated by the {{site.data.keyword.security-advisor_short}} service |
| {: caption="List of security Cloud services that send events to {{site.data.keyword.cloudaccesstrailshort}}" caption-side="top"} |
{: #storage}
The following table lists storage Cloud services that send events to {{site.data.keyword.cloudaccesstrailshort}}:
| Service | Description | {{site.data.keyword.cloudaccesstrailshort}} events |
|---|---|---|
| {{site.data.keyword.cos_full_notm}} | You can use {{site.data.keyword.cos_full_notm}} to store data in the {{site.data.keyword.cloud_notm}}. Data is encrypted and dispersed across multiple geographic locations, and accessed over HTTP by using a REST API. | Events that are generated by {{site.data.keyword.cos_full_notm}} |
| {: caption="List of storage Cloud services that send events to {{site.data.keyword.cloudaccesstrailshort}}" caption-side="top"} |
{: #watson_data}
| Service | Description | {{site.data.keyword.cloudaccesstrailshort}} events |
|---|---|---|
| Watson Studio | Watson Studio provides the environment and tools to solve your business problems by collaboratively working with data. You can choose the tools that you need to analyze and visualize data, cleanse and model data, ingest streaming data, or create, train, and deploy machine learning models. | Events that are generated by Watson Studio |
| Watson Machine Learning | You can use Watson Machine Learning to build sophisticated analytical models, which are trained with your own data, that you can deploy for use in applications. | Events that are generated by Watson Machine Learning |
| Watson Knowledge Catalog | Watson Knowledge Catalog provides a secure enterprise catalog management platform that is supported by a data policy framework. A catalog connects data and knowledge with the people who need to use it. The data policy framework ensures that data access is compliant with your business rules. | Events that are generated by Watson Knowledge Catalog |
| {: caption="List of Watson Cloud data services that send events to {{site.data.keyword.cloudaccesstrailshort}}" caption-side="top"} |