Fortinet black logo

Administration Guide

Secret

Secret

Go to Secret in Log & Report to see logs related to the following:

  • Secret

  • Clear Text

  • Check-outs and Check-ins

  • Password Changes

  • Secret Video

  • Secret Request

  • Job

  • The following options are available in the tabs:

    Back ()

    Go back to Secret.

    Download

    From the dropdown in Secret and Secret Video:

    • Select Log to export the selected secret session log to your computer as a text file named as secret-xyz-YYYY_MM_DD.txt.

    • Having selected a video log labelled as Video Finish, from the dropdown, select Video to download the secret video in WebM format.

    In tabs except Secret and Secret Video, select to export the selected secret session log to your computer as a text file named as secret-xyz-YYYY_MM_DD.txt.

    Log location

    Select a source from where to retrieve logs:

    • Disk (default) (FortiPAM)

    • FortiAnalyzer

    See FortiAnalyzer logging for setting up FortiAnalyzer as the remote logging server.

    Time frame

    From the dropdown, select from the following time filters:

    • 5 minutes

    • 1 hour

    • 24 hours

    • 7 days

    • Custom

    • View All

    Custom filter

    1. From the dropdown, select Custom.
    2. In the window that opens, you can set combinations of =, Range, <=, >=, and NOT.
    3. Enter a date and time.
    4. Click Apply.

      For example, to create a range filter that filters and displays all the logs between 8:00 AM on 10th October, 2023 to 1:00 PM on 12th October 2023, we set up a filter that looks like the following:

    Refresh

    To refresh the contents, click the refresh icon.

    Details

    Select to see details for the selected log entry.

    Search

    Enter a search term in the search field, then hit Enter to search the secret video list. To narrow down your search, see Column filter.

Secret

Selecting Secret opens all the secret logs. Different subcategories of secret logs are displayed when you click on a secret log.

Clear Text

Selecting Clear Text shows logs related to viewing passwords. This category of the secret log shows all the information related to the launching of a secret, uploading of a video, termination of a launched session, and status of a FortiPAM token.

Check-outs and Check-ins

Selecting Check-outs and Check-ins shows logs related to password check-ins and check-outs. It displays all the information related to secret check-out and check-in.

Password Changes

Selecting Password Changers shows logs related to password changers. It displays all the information about when a password changer is triggered on a secret. It indicates whether the operation is successful and who initiated the operation. Operations such as password verification or change of password are recorded here.

Secret Video

Selecting Secret Video shows logs related to secret videos. This category of the secret log shows all the videos of launched secrets from FortiPAM. It is helpful to assist in auditing a user's behavior on the secret, ensuring that no malicious activity is performed.

To view a recorded video of a launched secret:
  1. Select the log with the operation labelled as Video Finish, then click the Details button located at the right of the menu.

    Alternatively, double-click the log labelled as Video Finish.

    The video player opens.

.

To download a recorded video of a launched secret:
  1. Select the log with the operation labelled as Video Finish, then from the Download dropdown at the top, select Video.

    The video is downloaded in WebM format.

Secret Request

Selecting Secret Request shows logs related to secret requests. This category of the secret log shows all the information related to a secret that requires secret approval. It indicates when a request is submitted for a secret or when a request is approved or denied.

Job

Selecting Job shows all logs related to jobs. This category of secret log keeps track of all the events related to an execution of a job on a secret. This includes the job name, the user who initiated the job, the type of the job, and whether the job is executed successfully.

Secret

Go to Secret in Log & Report to see logs related to the following:

  • Secret

  • Clear Text

  • Check-outs and Check-ins

  • Password Changes

  • Secret Video

  • Secret Request

  • Job

  • The following options are available in the tabs:

    Back ()

    Go back to Secret.

    Download

    From the dropdown in Secret and Secret Video:

    • Select Log to export the selected secret session log to your computer as a text file named as secret-xyz-YYYY_MM_DD.txt.

    • Having selected a video log labelled as Video Finish, from the dropdown, select Video to download the secret video in WebM format.

    In tabs except Secret and Secret Video, select to export the selected secret session log to your computer as a text file named as secret-xyz-YYYY_MM_DD.txt.

    Log location

    Select a source from where to retrieve logs:

    • Disk (default) (FortiPAM)

    • FortiAnalyzer

    See FortiAnalyzer logging for setting up FortiAnalyzer as the remote logging server.

    Time frame

    From the dropdown, select from the following time filters:

    • 5 minutes

    • 1 hour

    • 24 hours

    • 7 days

    • Custom

    • View All

    Custom filter

    1. From the dropdown, select Custom.
    2. In the window that opens, you can set combinations of =, Range, <=, >=, and NOT.
    3. Enter a date and time.
    4. Click Apply.

      For example, to create a range filter that filters and displays all the logs between 8:00 AM on 10th October, 2023 to 1:00 PM on 12th October 2023, we set up a filter that looks like the following:

    Refresh

    To refresh the contents, click the refresh icon.

    Details

    Select to see details for the selected log entry.

    Search

    Enter a search term in the search field, then hit Enter to search the secret video list. To narrow down your search, see Column filter.

Secret

Selecting Secret opens all the secret logs. Different subcategories of secret logs are displayed when you click on a secret log.

Clear Text

Selecting Clear Text shows logs related to viewing passwords. This category of the secret log shows all the information related to the launching of a secret, uploading of a video, termination of a launched session, and status of a FortiPAM token.

Check-outs and Check-ins

Selecting Check-outs and Check-ins shows logs related to password check-ins and check-outs. It displays all the information related to secret check-out and check-in.

Password Changes

Selecting Password Changers shows logs related to password changers. It displays all the information about when a password changer is triggered on a secret. It indicates whether the operation is successful and who initiated the operation. Operations such as password verification or change of password are recorded here.

Secret Video

Selecting Secret Video shows logs related to secret videos. This category of the secret log shows all the videos of launched secrets from FortiPAM. It is helpful to assist in auditing a user's behavior on the secret, ensuring that no malicious activity is performed.

To view a recorded video of a launched secret:
  1. Select the log with the operation labelled as Video Finish, then click the Details button located at the right of the menu.

    Alternatively, double-click the log labelled as Video Finish.

    The video player opens.

.

To download a recorded video of a launched secret:
  1. Select the log with the operation labelled as Video Finish, then from the Download dropdown at the top, select Video.

    The video is downloaded in WebM format.

Secret Request

Selecting Secret Request shows logs related to secret requests. This category of the secret log shows all the information related to a secret that requires secret approval. It indicates when a request is submitted for a secret or when a request is approved or denied.

Job

Selecting Job shows all logs related to jobs. This category of secret log keeps track of all the events related to an execution of a job on a secret. This includes the job name, the user who initiated the job, the type of the job, and whether the job is executed successfully.