Yandex Monitoring metric reference
Written by
Updated at October 7, 2024
This section describes Audit Trails metrics delivered to Monitoring.
The name of the metric is written in the name
label.
Common labels for all Audit Trails metrics:
Label | Value |
---|---|
service | Service ID: audit-trails |
trail | Trail ID |
status | Trail status |
event_type | Event type |
event_source | Event source service |
destination_type | Destination object |
Service metrics:
Metric name Type, units of measurement |
Description Labels |
---|---|
trail.status IGAUGE , ACTIVE /ERROR |
Current trail status. You can use this metric to create an alert for a trail going inactive. |
trail.processed_events_count RATE , events per second |
Frequency of events received for processing from the audit log collection scope |
trail.unauthorized_events_count RATE , events per second |
Frequency of events with failed authorization. You can use this metric to create an alert for attempts of unauthorized access to resources. |
trail.delivered_events_count RATE , events per second |
Frequency of events delivered to the destination object. You can use this metric to create an alert signaling the suspension of the audit log upload to the destination object, e.g., due to a lack of free storage space in a bucket or due to a required role being revoked from a service account. |
quota.trails_count.limit IGAUGE , number |
Current trail quota per cloud |
quota.trails_count.usage IGAUGE , number |
Current usage of the trail quota per cloud. You can use this metric to create an alert signaling the upcoming quota depletion. |
What's next
- Review the Audit Trails alert settings in Monitoring.