Monitor Forescout eyeSight user activity

You can view user audit trail reports that contain information about user activities during a specified time period. These reports list operations (add, delete, edit) performed by users related to Console configurations, for example:

  • Policies
  • Stopping or starting the eyeSight
  • User passwords
  • Plugins and Modules
  • Blocked and released users can be viewed in the Events Viewer Log.
Note: View authentication failure records and reset locked-out users with the user lock command-line interface (CLI) command. Refer to the Forescout eyeSight CLI technical reference topic for more information.