Important Update: Cohesity Products Documentation
All Cohesity product documentation are now managed via the Cohesity Docs Portal: https://docs.cohesity.com/HomePage/Content/home.htm. Some documentation available here may not reflect the latest information or may no longer be accessible.
Arctera Insight Information Governance User's Guide
- Section I. Introduction
- Information Governance Dashboard
- Information Governance Workspace
- Section II. Information Governance reports
- Using Information Governance reports
- About Information Governance reports
- How Information Governance reporting works
- Creating a report
- About Information Governance security reports
- Activity Details report
- Permissions reports
- Inactive Users
- Path Permissions
- Permissions Search report
- About Permissions Query templates
- Creating a Permissions Query Template
- Creating custom rules
- Permissions Query Template actions
- Using Permissions Search report output to remediate permissions
- Entitlement Review
- User/Group Permissions
- Group Change Impact Analysis
- Ownership Reports
- Create/Edit security report options
- About Information Governance storage reports
- Create/Edit storage report options
- About Information Governance custom reports
- Considerations for importing paths using a CSV file
- Managing reports
- About managing Information Governance reports
- Viewing reports
- Filtering a report
- Editing a report
- About sharing reports
- Copying a report
- Running a report
- Viewing the progress of a report
- Customizing a report output
- Configuring a report to generate a truncated output
- Sending a report by email
- How does number of records field work differently from the truncate output records field?
- Automatically archiving reports
- Canceling a report run
- Deleting a report
- Considerations for viewing reports
- Organizing reports using labels
- Using Information Governance reports
- Section III. Remediation
- Configuring remediation workflows
- About remediation workflows
- Prerequisites for configuring remediation workflows
- Configuring Self-Service Portal settings
- About workflow templates
- Managing workflow templates
- Creating a workflow using a template
- Managing workflows
- Auditing workflow paths
- Monitoring the progress of a workflow
- Remediating workflow paths
- Using the Self-Service Portal
- About the Self-Service Portal
- Logging in to the Self-Service Portal
- Using the Self-Service Portal to review user entitlements
- Using the Self-Service Portal to manage Data Loss Prevention (DLP) incidents
- Using the Self-Service Portal to confirm ownership of resources
- Using the Self-Service Portal to classify sensitive data
- Managing data
- About managing data using Arctera Enterprise Vault and custom scripts
- Managing data from the Shares list view
- Managing inactive data from the Folder Activity tab
- Managing inactive data by using a report
- Archiving workflow paths using Arctera Enterprise Vault
- Using custom scripts to manage data
- Pushing classification tags while archiving files into Arctera Enterprise Vault
- About adding tags to devices, files, folders, and shares
- Managing permissions
- Configuring remediation workflows
- Appendix A. Command Line Reference
- Index
Activity Details report
Use the Activity Details reports to view the type of access events by selected users or groups on selected files or folders. The report also provides information about the custom attributes of the users who have activity on the selected data resources.
Table: Activity Details reports
| Report type | Description |
|---|---|
Activity Details report for paths | Use this report to get details of access on one or more files or folders during the selected time window for all configured users and groups. Optionally, you can scope the report to one or more users or groups to get activity information for the selected users on the selected data resources. |
Activity Details report for users or groups | Use this report to get detailed accesses by one or more users or by members of one or more groups during the selected time window. Optionally, you can also include one or more users, as an input parameter for this report to display only the activities by the selected users. |
Note the following about activity information captured by the Activity Details reports:
Information Governance does not expand built-in groups like Everyone or Authenticated Users. Authenticated Users group is not a true Active Directory group. Users are added to this group dynamically as they authenticate and log in to a domain. Since this is a dynamic group, Information Governance does not get membership information for this group during an Active Directory scan. Thus, activity information about such users and groups is not captured in these reports even if these groups to users or groups are selected when configuring the reports.
Information Governance captures the IP address of the source machine (the location from which activity is generated) only in the case of NetApp CIFS and EMC CIFS paths. For rest of the devices such as Windows File Server, SharePoint, NFS paths, the Activity Details report returns the IP address as 0.0.0.0.
At this time, Information Governance does not relate an Permission change event with a specific user. Thus, when configuring an Activity Details for Paths report, Permission Change events are not reported if you select a specific user or group.
To get information about all Permission Change events, you must select > option when configuring the report. If you do not make any selection on the tab, Information Governance creates the report for all users by default.
See Create or Edit Activity Details for Paths report.
See Create or edit Activity Details for Users and Groups report.
Note:
The Activity Details type reports are not currently available for Oracle Cloud Infrastructure and Pure Storage FlashArray.
More Information