Splunk dashboards and audit logs
Ping provides a free Splunk for PingFederate application that customers can use to create dashboards.
This application takes advantage of the Writing audit logs for Splunk and Outbound provisioning audit logging, which can be enabled in log4j2.xml
file.
Examples of Splunk dashboards
To help you review different events, the following dashboards are available from the top-level menu of the PingFederate app for Splunk:
-
Account Manager
-
Identity Provider
-
Service Provider
-
OAuth Server
Click a menu item to view its sub-menus, as the following example shows for OAuth Server.
The following image shows the Identity Provider Access sub-menu dashboard with examples from the security audit log entries.
After you select a sub-menu, an image like the following OAuth Server Client Request example is displayed while the dashboard waits for the search results.
After you click Submit, the dashboard displays the following search results for the client request.
To view additional results, scroll downward or select another page. The following Client Request page provides an example.
The following images provide additional examples of the Service Provider Access sub-menu dashboard.