Updated on 2026-07-30 GMT+08:00

Viewing Operation Reports

Scenarios

As the audit administrator, you can view and export operation details reports. An operation report includes the Operation Stat, Logon Stat, Duration Stat, SrcIP Stat, Cooperation Stat, Approval Stat, Interception Stat, Command Stat, and File Stat graphs.

Notes and Constraints

  • Operation statistics for a maximum of 180 consecutive days can be viewed.
    • By default, the operation data of the current day is displayed by the hour.
    • If the time range you select falls into a week of a month, the operation data is displayed by the day.
    • If the time range you select falls into a week spanning different months, the operation data can be displayed by the day or by the month.
    • If the time range you select spans different weeks of a month, the operation data can be displayed by the day or by the week.
    • If the time range you select spans different weeks of different months, the operation data can be displayed by the day, by the week, or by the month.
  • You can view operation statistics in line, bar, or pie charts.
    • : Statistics will be displayed in a line chart.
    • : Statistics will be displayed in a bar chart.
    • Only the command interception trend chart can be displayed in a pie chart.
  • By default, the Operation Stat trend chart is displayed. It allows you to:
    • Check operation statistics trend chart by user. A maximum of five users can be selected.
    • Check operation statistics trend chart by resource. A maximum of five resources can be selected.

Prerequisites

The role you belong to has the management permission for the Operation Report module. For details about how to check the permissions of each role, see Role.

Viewing Operation Reports

  1. Log in to your bastion host system.
  2. In the navigation pane on the left, choose Audit > Operation Report to go to the operation report page.
  3. Click each statistics tab and view the details.

    Table 1 Operation reports

    Statistical Dimension

    Description

    Operation Stat

    Displays the distribution of accessed resources by user or by resource. By default, the statistics of the current day is displayed by the hour.

    In the detailed data area, view the session start and end time, user login name, resource name, protocol type, and account.

    Logon Stat

    Displays the number of historical sessions by user or by resource. By default, the statistics of the current day is displayed by the hour.

    In the detailed data area, view the session start and end time, user login name, resource name, protocol type, and account.

    Duration Stat

    Displays the duration of historical sessions by user or by resource. By default, the statistics of the current day is displayed by the hour.

    In the detailed data area, view the session start and end time, user login name, resource name, protocol type, account, and session duration.

    SrcIP Stat

    Displays the number of source IP addresses from which sessions are established by user or by resource. By default, the statistics of the current day is displayed by the hour.

    In the detailed data area, view the session start and end time, user login name, resource name, protocol type, account, and source IP address.

    Cooperation Stat

    Displays the number of users participating in a cooperation session by user or by resource. By default, the statistics of the current day is displayed by the hour.

    In the detailed data area, view the session start and end time, user login name, resource name, protocol type, account, and login names of session participants.

    Two-person authorization

    Displays the number of sessions requiring two-person approval by user or by resource. By default, the statistics of the current day is displayed by the hour.

    In the detailed data area, view the approval time, user login name, resource name, protocol type, account, and login names of approvers.

    Interception Stat

    Displays the number of intercepted commands by user or by resource. By default, the statistics of the current day is displayed by the hour.

    Intercepting a command includes three actions, disconnecting the session, rejecting the session, or asking dynamic approval.

    In the detailed data area, view the operation time, user login name, resource name, protocol type, account, and action.

    Command Stat

    Displays the number of executed commands by user or resource. By default, the statistics of the current day is displayed by the hour.

    In the detailed data area, view the operation time, user login name, resource name, protocol type, account, and operation instructions.

    File Stat

    Displays the number of files uploaded and downloaded by user or by resource. By default, the statistics of the current day is displayed by the hour.

    In the detailed data area, view the file operation time, user login name, resource name, protocol type, account, operation type, and file name.