Yandex Monitoring metric reference
Written by
Updated at April 28, 2025
This section describes Audit Trails metrics delivered to Monitoring.
The name label contains the metric name.
Labels shared by all Audit Trails metrics:
| Label | Value |
|---|---|
| service | Service ID: audit-trails |
| trail | Trail ID |
| status | Trail status |
| event_type | Event type |
| event_source | Event source service |
| destination_type | Destination object |
Service metrics:
| Metric name Type, units |
Description Labels |
|---|---|
trail.statusIGAUGE, ACTIVE/ERROR |
Current trail status. You can use this metric to create an alert for a trail going inactive. |
trail.processed_events_countRATE, events per second |
Frequency of events received for processing from the audit log collection scope |
trail.unauthorized_events_countRATE, events per second |
Frequency of events with failed authorization. You can use this metric to create an alert for attempts of unauthorized access to resources. |
trail.delivered_events_countRATE, events per second |
Frequency of events delivered to the destination object. You can use this metric to create an alert for temporary suspension of audit log ingestion to the destination object, e.g., due to insufficient space in the bucket or revocation of the required role from the service account. |
quota.trails_count.limitIGAUGE, count |
Current cloud trail quota |
quota.trails_count.usageIGAUGE, count |
Current usage of the cloud trail quota. You can use this metric to create an alert for upcoming quota depletion. |
What's next
- Review the Audit Trails alert settings in Monitoring.