Audit Logs

The Audit logs page allows you to view the activities in Infinity XDRClosed Extended Detection & Response/XPRClosed Extended Prevention & Response.

Note - Only high level activities that affect Check Point product security are shown. Changes in incident management (such as assignee, status and comments) are not shown.

To view the Audit logs, go to Settings > Audit logs.

Infinity XDR/XPR creates Audit logs only for these activities:

To search for a specific activity, enter the name in the Search field.

To export the data to an excel in CSV format, click Export all (CSV).

Column Name

Description

Date

Date and time the activity was started.

User

Name of the user who initiated the activity.

System indicates that the activity was performed by Infinity XDR/XPR.

Action Type

Type of activity performed.

Details

Details of the activity.

For activities on incidents, it shows a link to the relevant incident.

Status

Status of the activity.

  • In progress

  • Completed

  • Failed