Managed Services for Kubernetes Audit Trails Events: ApiServerPatch
Event JSON schema
{
"eventId": "string",
"eventSource": "string",
"eventType": "string",
"eventTime": "string",
"authentication": {
"authenticated": "boolean",
// Includes only one of the fields `subjectType`
"subjectType": "string",
// end of the list of possible fields
// Includes only one of the fields `subjectId`
"subjectId": "string",
// end of the list of possible fields
// Includes only one of the fields `subjectName`
"subjectName": "string",
// end of the list of possible fields
// Includes only one of the fields `federationId`
"federationId": "string",
// end of the list of possible fields
// Includes only one of the fields `federationName`
"federationName": "string",
// end of the list of possible fields
// Includes only one of the fields `federationType`
"federationType": "string",
// end of the list of possible fields
"tokenInfo": {
"maskedIamToken": "string",
// Includes only one of the fields `iamTokenId`
"iamTokenId": "string",
// end of the list of possible fields
// Includes only one of the fields `impersonatorId`
"impersonatorId": "string",
// end of the list of possible fields
// Includes only one of the fields `impersonatorType`
"impersonatorType": "string",
// end of the list of possible fields
// Includes only one of the fields `impersonatorName`
"impersonatorName": "string",
// end of the list of possible fields
// Includes only one of the fields `impersonatorFederationId`
"impersonatorFederationId": "string",
// end of the list of possible fields
// Includes only one of the fields `impersonatorFederationName`
"impersonatorFederationName": "string",
// end of the list of possible fields
// Includes only one of the fields `impersonatorFederationType`
"impersonatorFederationType": "string"
// end of the list of possible fields
}
},
"authorization": {
"authorized": "boolean"
},
"resourceMetadata": {
"path": [
{
"resourceType": "string",
"resourceId": "string",
// Includes only one of the fields `resourceName`
"resourceName": "string"
// end of the list of possible fields
}
]
},
"requestMetadata": {
"remoteAddress": "string",
"userAgent": "string",
"requestId": "string",
// Includes only one of the fields `remotePort`
"remotePort": "string"
// end of the list of possible fields
},
"eventStatus": "string",
"error": {
"code": "integer",
"message": "string",
"details": [
"object"
]
},
"details": {
"nativeApiServerEvent": {
"apiVersion": "string",
"kind": "string",
"level": "string",
"auditID": "string",
"stage": "string",
"requestURI": "string",
"verb": "string",
"user": {
"username": "string",
"uid": "string",
"groups": [
"string"
],
"extra": {
// Includes only one of the fields `nullValue`, `numberValue`, `stringValue`, `boolValue`, `structValue`, `listValue`
"nullValue": "string",
"numberValue": "string",
"stringValue": "string",
"boolValue": "boolean",
"structValue": "object",
"listValue": {
"values": [
"object"
]
}
// end of the list of possible fields
}
},
"impersonatedUser": {
"username": "string",
"uid": "string",
"groups": [
"string"
],
"extra": {
// Includes only one of the fields `nullValue`, `numberValue`, `stringValue`, `boolValue`, `structValue`, `listValue`
"nullValue": "string",
"numberValue": "string",
"stringValue": "string",
"boolValue": "boolean",
"structValue": "object",
"listValue": {
"values": [
"object"
]
}
// end of the list of possible fields
}
},
"sourceIPs": [
"string"
],
"userAgent": "string",
"objectRef": {
// Includes only one of the fields `nullValue`, `numberValue`, `stringValue`, `boolValue`, `structValue`, `listValue`
"nullValue": "string",
"numberValue": "string",
"stringValue": "string",
"boolValue": "boolean",
"structValue": "object",
"listValue": {
"values": [
"object"
]
}
// end of the list of possible fields
},
"responseStatus": {
"apiVersion": "string",
"code": "string",
"details": {
// Includes only one of the fields `nullValue`, `numberValue`, `stringValue`, `boolValue`, `structValue`, `listValue`
"nullValue": "string",
"numberValue": "string",
"stringValue": "string",
"boolValue": "boolean",
"structValue": "object",
"listValue": {
"values": [
"object"
]
}
// end of the list of possible fields
},
"kind": "string",
"message": "string",
"metadata": {
// Includes only one of the fields `nullValue`, `numberValue`, `stringValue`, `boolValue`, `structValue`, `listValue`
"nullValue": "string",
"numberValue": "string",
"stringValue": "string",
"boolValue": "boolean",
"structValue": "object",
"listValue": {
"values": [
"object"
]
}
// end of the list of possible fields
},
"reason": "string",
"status": "string"
},
"requestObject": {
// Includes only one of the fields `nullValue`, `numberValue`, `stringValue`, `boolValue`, `structValue`, `listValue`
"nullValue": "string",
"numberValue": "string",
"stringValue": "string",
"boolValue": "boolean",
"structValue": "object",
"listValue": {
"values": [
"object"
]
}
// end of the list of possible fields
},
"responseObject": {
// Includes only one of the fields `nullValue`, `numberValue`, `stringValue`, `boolValue`, `structValue`, `listValue`
"nullValue": "string",
"numberValue": "string",
"stringValue": "string",
"boolValue": "boolean",
"structValue": "object",
"listValue": {
"values": [
"object"
]
}
// end of the list of possible fields
},
"requestReceivedTimestamp": "string",
"stageTimestamp": "string",
"annotations": "object"
},
"clusterId": "string"
},
"requestParameters": "object",
"response": "object"
}
Field description
|
Field |
Description |
|
eventId |
string |
|
eventSource |
string |
|
eventType |
string |
|
eventTime |
string (date-time) String in RFC3339 To work with values in this field, use the APIs described in the |
|
authentication |
|
|
authorization |
|
|
resourceMetadata |
|
|
requestMetadata |
|
|
eventStatus |
enum (EventStatus)
|
|
error |
The error result of the operation in case of failure or cancellation. |
|
details |
|
|
requestParameters |
object |
|
response |
object |
IamAuthentication
|
Field |
Description |
|
authenticated |
boolean |
|
subjectType |
enum (IamSubjectType) Includes only one of the fields
|
|
subjectId |
string Includes only one of the fields |
|
subjectName |
string Includes only one of the fields |
|
federationId |
string Includes only one of the fields |
|
federationName |
string Includes only one of the fields |
|
federationType |
enum (FederationType) Includes only one of the fields
|
|
tokenInfo |
IamTokenInfo
|
Field |
Description |
|
maskedIamToken |
string |
|
iamTokenId |
string Includes only one of the fields |
|
impersonatorId |
string Includes only one of the fields |
|
impersonatorType |
enum (IamSubjectType) Includes only one of the fields
|
|
impersonatorName |
string Includes only one of the fields |
|
impersonatorFederationId |
string Includes only one of the fields |
|
impersonatorFederationName |
string Includes only one of the fields |
|
impersonatorFederationType |
enum (FederationType) Includes only one of the fields
|
Authorization
|
Field |
Description |
|
authorized |
boolean |
ResourceMetadata
|
Field |
Description |
|
path[] |
Resource
|
Field |
Description |
|
resourceType |
string |
|
resourceId |
string |
|
resourceName |
string Includes only one of the fields |
RequestMetadata
|
Field |
Description |
|
remoteAddress |
string |
|
userAgent |
string |
|
requestId |
string |
|
remotePort |
string (int64) Includes only one of the fields |
Status
The error result of the operation in case of failure or cancellation.
|
Field |
Description |
|
code |
integer (int32) Error code. An enum value of google.rpc.Code |
|
message |
string An error message. |
|
details[] |
object A list of messages that carry the error details. |
EventDetails
|
Field |
Description |
|
nativeApiServerEvent |
|
|
clusterId |
string |
NativeApiServerEvent
|
Field |
Description |
|
apiVersion |
string |
|
kind |
string |
|
level |
string |
|
auditID |
string |
|
stage |
string |
|
requestURI |
string |
|
verb |
string |
|
user |
|
|
impersonatedUser |
|
|
sourceIPs[] |
string |
|
userAgent |
string |
|
objectRef |
|
|
responseStatus |
|
|
requestObject |
|
|
responseObject |
|
|
requestReceivedTimestamp |
string |
|
stageTimestamp |
string |
|
annotations |
object (map<string, string>) |
UserInfo
|
Field |
Description |
|
username |
string |
|
uid |
string |
|
groups[] |
string |
|
extra |
Value
|
Field |
Description |
|
nullValue |
enum (NullValue) Includes only one of the fields |
|
numberValue |
string Includes only one of the fields |
|
stringValue |
string Includes only one of the fields |
|
boolValue |
boolean Includes only one of the fields |
|
structValue |
object Includes only one of the fields |
|
listValue |
Includes only one of the fields |
ListValue
|
Field |
Description |
|
values[] |
ResponseStatus
|
Field |
Description |
|
apiVersion |
string |
|
code |
string (int64) |
|
details |
|
|
kind |
string |
|
message |
string |
|
metadata |
|
|
reason |
string |
|
status |
string |