Skip to main content
Skip table of contents

KSA-ECC – Reports and Reporting Packages

Report NameReport IDControl SupportData SourceLog Sources
CCF: Applications Accessed By User Summary20631.8.3, 2.7.3, 3.1.3, 5.1.3Data Processor(s)All Available Log Sources
CCF: Audit Log Summary20761.8.3, 2.15.3, 3.1.3, 5.1.3Platform ManagerAll Available Log Sources
CCF: Backup Activity Summary20621.8.3, 2.3.3, 2.9.3, 3.1.3Data Processor(s)All Available Log Sources
CCF: Compromises Detected Summary20641.8.3, 2.3.3, 2.5.3, 2.10.3, 2.13.13, 2.15.3, 3.1.3, 5.1.3LogMartAll Available Log Sources
CCF: Config/Policy Change Summary20491.8.3, 2.3.3, 2.4.3, 2.5.3, 2.8.3, 2.10.3, 2.15.3, 3.1.3, 5.1.3LogMartAll Available Log Sources
CCF: Critical Environment Error Summary20501.8.3, 2.3.3, 2.4.3, 2.5.3, 3.1.3, 5.1.3Platform ManagerAll Available Log Sources
CCF: GeoIP Summary20691.8.3, 2.5.3, 4.2.3Platform ManagerAll Available Log Sources
CCF: LogRhythm Data Loss Defender Log Summary20661.8.3, 2.7.3LogMartAll Available Log Sources
CCF: Malware Detected Summary20511.8.3, 2.3.3, 2.10.3, 2.13.3, 3.1.3, 5.1.3Platform ManagerAll Available Log Sources
CCF: Object Access Summary20671.8.3, 2.3.3, 2.7.3, 3.1.3, 5.1.3Data Processor(s)All Available Log Sources
CCF: Patch Activity Summary20521.6.3, 1.8.3, 2.10.3, 3.1.3, 5.1.3Data Processor(s)All Available Log Sources
CCF: Physical Access Summary20531.8.3, 2.14.3, 3.1.3, 5.1.3Platform ManagerAll Available Log Sources
CCF: Priv Account Management Activity Summary20801.8.3, 2.2.3, 3.1.3, 5.1.3Data Processor(s)All Available Log Sources
CCF: Priv Authentication Activity Summary20791.8.3, 2.2.3, 3.1.3, 5.1.3Platform ManagerAll Available Log Sources
CCF: Rogue Access Point Summary20541.8.3, 2.2.3, 2.3.3, 3.1.3, 5.1.3Platform ManagerAll Available Log Sources
CCF: Signature Activity Summary20551.6.3, 1.8.3, 2.3.3, 2.5.3, 3.1.3LogMartAll Available Log Sources
CCF: Social Media Summary20701.8.3, 2.3.3, 3.1.3Platform ManagerAll Available Log Sources
CCF: Suspected Wireless Attack Summary20561.8.3, 2.3.3, 2.5.3, 2.13.3, 3.1.3, 5.1.3Platform ManagerAll Available Log Sources
CCF: Time Sync Error Summary20571.8.3, 3.1.3Platform ManagerAll Available Log Sources
CCF: Top Suspicious Users20591.8.3, 2.2.3, 3.1.3Data Processor(s)All Available Log Sources
CCF: Use Of Non-Encrypted Protocols Summary20601.8.3, 2.5.3, 2.8.3, 2.15.3, 3.1.3, 5.1.3LogMartAll Available Log Sources
CCF: User Misuse Summary20611.8.3, 2.2.3, 3.1.3, 5.1.3Platform ManagerAll Available Log Sources
CCF: User Priv Escalation (SU & SUDO) Summary20781.8.3, 2.2.3, 3.1.3, 5.1.3Data Processor(s)All Available Log Sources
CCF: User Priv Escalation (Windows) Summary20771.8.3, 2.2.3, 3.1.3, 5.1.3Data Processor(s)All Available Log Sources
CCF: Vulnerability Detected Summary20581.6.2, 1.6.3, 1.8.3, 2.3.3, 2.5.3, 2.10.3, 3.1.3, 5.1.3Platform ManagerAll Available Log Sources

Report Package Name

Report Package ID

Description

CCF: Daily IT Operations Reporting Package89This Reporting Package is a template to deliver pertinent content for IT Operations on a daily basis.
CCF: Daily IT Security Reporting Package90This Reporting Package is a template to deliver pertinent content for IT Security on a daily basis.
CCF: Executive Reporting Package87This reporting package is a template to deliver pertinent content for Executives on a monthly basis.
CCF: Weekly Audit Reporting Package88This Reporting Package is a template to deliver pertinent content for Internal and/or External Audit groups on a weekly basis
JavaScript errors detected

Please note, these errors can depend on your browser setup.

If this problem persists, please contact our support.