Skip to main content
NetApp Knowledge Base

How to correlate AIQUM and ONTAP logs for API Gateway user activity

Views:
21
Visibility:
Public
Votes:
0
Category:
active-iq-unified-manager
Specialty:
om
Last Updated:

Applies to

  • Active IQ Unified Manager 9.x (AIQUM)
  • ONTAP 9
  • AIQUM API Gateway

Description

  • When Active IQ Unified Manager (AIQUM) is used as an API Gateway to ONTAP, end-user actions on ONTAP are executed using the account used to add the cluster in AIQUM, however AIQUM is accessed by separate accounts local/remotely configured on AIQUM as application administrator with no trace to ONTAP.
  • For example, AIQUM accessed with admin_GWAuth during gateway authentication to fire the API calls towards where ONTAP is accessed with service_APIuser to perform the required tasks mentioned in the call.
  • ONTAP audit shows the ONTAP account, not the AIQUM username. 
  • This article explains how to correlate AIQUM and ONTAP logs to identify which AIQUM user initiated an action on ONTAP
NetApp provides no representations or warranties regarding the accuracy or reliability or serviceability of any information or recommendations provided in this publication or with respect to any results that may be obtained by the use of the information or observance of any recommendations provided herein. The information in this document is distributed AS IS and the use of this information or the implementation of any recommendations or techniques herein is a customer's responsibility and depends on the customer's ability to evaluate and integrate them into the customer's operational environment. This document and the information contained herein may be used solely in connection with the NetApp products discussed in this document.