What do syslog entries from TPAM look like?
The following is a sample of how the logs are captured (sample of password request logs):
Dec 12 12:26:14 IP Address PAR[2428]: UserName: PARAdmin Operation: Check Password ObjectType: Account Password Target: SystemName/LocalAdmin Role: Admin Failed? 0
Dec 12 12:26:37 IP Address PAR[2844]: UserName: PARAdmin Operation: Revoke ObjectType: Account Permission Target: SystemName/LocalAdmin Role: Admin Failed? 0
Dec 12 12:26:37 IP Address PAR[2920]: UserName: PARAdmin Operation: Grant ObjectType: Account Permission Target: SystemName/LocalAdmin Role: Admin Failed? 0
Dec 12 12:26:53 IP Address PAR[3532]: UserName: PARAdmin Operation: Approved ObjectType: Password Target: SystemName/LocalAdmin Role: NoRole Failed? 0
Dec 12 12:26:53 IP Address PAR[3844]: UserName: PARAdmin Operation: Request Release ObjectType: Password Target: SystemName/LocalAdmin Role: Requestor Failed? 0
Dec 12 12:27:15 IP Address PAR[3432]: UserName: PARAdmin Operation: Retrieve Password ObjectType: Password Target: SystemName/LocalAdmin Role: Requestor Failed? 0
Dec 12 12:27:25 IP Address PAR[4036]: UserName: PARAdmin Operation: Retrieve Password ObjectType: Password Target: SystemName/LocalAdmin Role: Requestor Failed? 0
Dec 12 12:27:33 IP Address PAR[3396]: UserName: PARAdmin Operation: Expired early ObjectType: Password Target: SystemName/LocalAdmin Role: Requestor Failed? 0
For version 2.5.915:
The actual time stamps are by syslogd not TPAM.
© 2025 One Identity LLC. ALL RIGHTS RESERVED. Terms of Use Privacy Cookie Preference Center