7.4

Table Of Contents
Currently, vRealize Automation supports audit logging as an extension of event logging. This functionality
provides basic auditing information, and retention settings are configurable only using the appropriate
vRealize Automation REST API event broker service calls. Audit logging is currently available to tenant
administrators and system administrators who can log on to tenants. It provides search and filter
capabilities for events.
By default, vRealize Automation supports audit logging for workflow subscription, endpoint, and fabric
group create, update, and delete events. vRealize Automation also supports audit logging customization
for a variety of IaaS events as well.
vRealize Automation audit logging is disabled by default. You can switch it on or off by toggling the
Enabled check box in the Audit Log Integration section on the vRA Settings > Logs page of the virtual
appliance management interface.
Audit log information appears on the standard Event Logs page. As a tenant admin, select
Administration > Event Logs to view this page. Audit events are identified in the event log table with the
designation Audit in the Event Type field. Each entry shows an Event Description for each event as well
as the Tenant, Time, User, and related Service Name.
Enabling audit logging for any other IaaS events requires a custom configuration file and running the
appropriate commands on your IaaS host machine. Contact VMware Professional Services for
assistance.
You can configure vRealize Automation to export events to an external syslog server, specifically VMware
Log Insight.
Configure vRealize Automation for Log Insight Audit Logging
You can configure vRealize Automation to export audit events to VMware Log Insight to facilitate viewing
audit events.
Audit logging is disabled by default and you must enable it to generate and view audit logging events.
If used, SSL is configured on the vRealize Automation appliance where the Log Insight agent resides,
and it concerns the connection to the Log Insight Syslog server. To use SSL, you must configure the
appropriate certificates and connectivity between vRealize Automation and the Log Insight server
installed on your deployment.
Prerequisites
vRealize Automation uses the Log Insight Agent that is installed by default on a vRealize Automation
deployment to read log entries for viewing in Log Insight.
Procedure
1 Log in to the Virtual Appliance Management Interface as a system administrator.
2 Select vRA Settings > Logs.
3 Verify that the Enabled check box for audit logging is selected under the Audit Log Integration
heading.
Managing vRealize Automation
VMware, Inc. 49