mirror of
https://github.com/awatertrevi/infisical.git
synced 2026-09-22 13:39:35 +00:00
rework pam docs for structure
This commit is contained in:
@@ -0,0 +1,23 @@
|
||||
---
|
||||
title: "Auditing"
|
||||
sidebarTitle: "Auditing"
|
||||
description: "Learn how Infisical audits all actions across your PAM project."
|
||||
---
|
||||
|
||||
## What's Audited
|
||||
|
||||
Infisical logs a wide range of actions to provide a complete audit trail for your PAM project. These actions include:
|
||||
|
||||
- Session Start and End
|
||||
- Fetching session credentials
|
||||
- Creating, updating, or deleting resources, accounts, folders, and sessions
|
||||
|
||||
<Info>
|
||||
Please note: Audit logs track metadata about sessions (e.g., start/end times), but not the specific commands executed *within* them. For detailed in-session activity, check out [Session Recording](/documentation/platform/pam/product-reference/session-recording).
|
||||
</Info>
|
||||
|
||||
## Viewing Audit Logs
|
||||
|
||||
You can view, search, and filter all events from the **Audit Logs** page within your PAM project.
|
||||
|
||||

|
||||
@@ -0,0 +1,60 @@
|
||||
---
|
||||
title: "Session Recording"
|
||||
sidebarTitle: "Session Recording"
|
||||
description: "Learn how Infisical records and stores session activity for auditing and monitoring."
|
||||
---
|
||||
|
||||
Infisical PAM provides robust session recording capabilities to help you audit and monitor user activity across your infrastructure.
|
||||
|
||||
## How It Works
|
||||
|
||||
When a user initiates a session by accessing an account, a recording of the session begins. The Gateway securely caches all recording data in temporary encrypted files on its local system.
|
||||
|
||||
Once the session concludes, the gateway transmits the complete recording to the Infisical platform for long-term, centralized storage. This asynchronous process ensures that sessions remain operational even if the connection to the Infisical platform is temporarily lost. After the upload is complete, administrators can search and review the session logs on the Infisical platform.
|
||||
|
||||
## What's Captured
|
||||
|
||||
The content captured during a session depends on the type of resource being accessed.
|
||||
|
||||
<AccordionGroup>
|
||||
<Accordion title="Database Sessions">
|
||||
Infisical captures all queries executed and their corresponding responses, including timestamps for each action.
|
||||
</Accordion>
|
||||
<Accordion title="SSH Sessions">
|
||||
Infisical captures all commands executed and their corresponding responses, including timestamps for each action.
|
||||
</Accordion>
|
||||
</AccordionGroup>
|
||||
|
||||
## Viewing Recordings
|
||||
|
||||
To review session recordings:
|
||||
|
||||
1. Navigate to the **Sessions** page in your PAM project.
|
||||
2. Click on a session from the list to view its details.
|
||||
|
||||

|
||||
|
||||
The session details page provides key information, including the complete session logs, connection status, the user who initiated it, and more.
|
||||
|
||||

|
||||
|
||||
### Searching Logs
|
||||
|
||||
You can use the search bar to quickly find relevant information:
|
||||
|
||||
**Sessions page:** Search across all session logs to locate specific queries or outputs.
|
||||

|
||||
|
||||
**Individual session page:** Search within that specific session's logs to pinpoint activity.
|
||||

|
||||
|
||||
## FAQ
|
||||
|
||||
<AccordionGroup>
|
||||
<Accordion title="Are session recordings encrypted?">
|
||||
Yes. All session recordings are encrypted at rest by default, ensuring your data is always secure.
|
||||
</Accordion>
|
||||
<Accordion title="Why aren't recordings streamed in real-time?">
|
||||
Currently, Infisical uses an asynchronous approach where the gateway records the entire session locally before uploading it. This design makes your PAM sessions more resilient, as they don't depend on a constant, active connection to the Infisical platform. We may introduce live streaming capabilities in a future release.
|
||||
</Accordion>
|
||||
</AccordionGroup>
|
||||
Reference in New Issue
Block a user