Skip to main content

audit

Creates, updates, deletes, gets or lists an audit resource.

Overview​

Nameaudit
TypeResource
Idsumologic.policies.audit

Fields​

The following fields are returned by SELECT queries:

The Audit policy.

NameDatatypeDescription
enabledbooleanWhether the Audit policy is enabled.

Methods​

The following methods are available for this resource:

NameAccessible byRequired ParamsOptional ParamsDescription
getselectregionGet the Audit policy. This policy specifies whether audit records for your account are enabled. You can access details about reported account events in the Sumo Logic Audit Index. [Learn More](https:​//help.sumologic.com/Manage/Security/Audit-Index)
updateupdateregion, enabledSet the Audit policy. This policy specifies whether audit records for your account are enabled. You can access details about reported account events in the Sumo Logic Audit Index. [Learn More](https:​//help.sumologic.com/Manage/Security/Audit-Index)

Parameters​

Parameters can be passed in the WHERE clause of a query. Check the Methods section to see which parameters are required or optional for each operation.

NameDatatypeDescription
regionstringSumo Logic deployment (au, ca, ch, de, eu, fed, in, jp, kr, us1, us2). Resolved from the SUMOLOGIC_ENVIRONMENT environment variable when it is set (x-stackQL-envVar, the same variable the Terraform provider reads); otherwise defaults to us2. A WHERE region = '...' value always takes precedence. (enum: [au, ca, ch, de, eu, fed, in, jp, kr, us1, us2], default: us2, x-stackQL-envVar: SUMOLOGIC_ENVIRONMENT)

SELECT examples​

Get the Audit policy. This policy specifies whether audit records for your account are enabled. You can access details about reported account events in the Sumo Logic Audit Index. Learn More

SELECT
enabled
FROM sumologic.policies.audit
WHERE region = '{{ region }}' -- required unless SUMOLOGIC_ENVIRONMENT is set
;

UPDATE examples​

Set the Audit policy. This policy specifies whether audit records for your account are enabled. You can access details about reported account events in the Sumo Logic Audit Index. Learn More

UPDATE sumologic.policies.audit
SET
enabled = {{ enabled }}
WHERE
region = '{{ region }}' --required unless SUMOLOGIC_ENVIRONMENT is set
AND enabled = {{ enabled }} --required
RETURNING
enabled;