View Dashboard
The View module provides real-time and historical access to audit log data through customizable, interactive interfaces. Unlike reports, which produce static snapshots, views give live access to log data as it is collected — making them the primary tool for monitoring activity, investigating incidents, and browsing audit data day to day. This article covers how to set up and configure views; for guidance on searching and filtering within a view see the Searching & Filtering Events article.
Understanding views:
Views are customizable interfaces for browsing and analyzing audit log data in real time. Each view is tied to a specific environment and category and can be configured with its own default columns, filters, and date range. Views can be saved, shared, duplicated, and marked as favorites for quick access.
Accessing the View module:
- Log in to the LT Auditor MP web portal
- Navigate to View in the main navigation menu
- Select a saved view from the list, or create a new one
- The log table displays audit records matching the view’s configuration
Creating a view:
Requires appropriate permissions.
- Click Create View
- Configure the view settings:
| Field | Description |
| View Name | A descriptive name for the view |
| Description | The purpose of this view |
| Environment | The monitored environment to display logs from |
| Category | The log category to focus on |
| Default Date Range | The initial date range shown when the view is opened |
- Click Save
Configuring view columns:
Customize which fields are displayed in the log table:
- Open the view configuration
- Navigate to the Columns tab
- Select columns from the available log fields:
- Drag to reorder columns
- Set column width for optimal display
- Enable sorting for each column
- Enable filtering for quick searches directly from the column header
- Click Save
Setting the default date range:
The default date range determines what data is shown when the view is first opened:
| Option | Description |
| Quick ranges | Today, Yesterday, Last 7 Days, etc. |
| Custom range | Specific start and end dates |
| Relative range | Dynamic ranges that update automatically (e.g., Previous Month) |
Set a reasonable default date range to avoid loading excessive data when the view is opened. Broad default ranges on high-volume categories can slow initial load times.
Duplicating a view:
To create a similar view quickly without starting from scratch:
- Open the view to duplicate
- Click Duplicate View
- Modify the name and settings as needed
- Save the new view
Sharing a view:
- Open the view
- Click Share
- Select users or roles to share with
- Set permissions:
- View Only — users can view the log data but cannot modify the view configuration
- Edit — users can modify the view configuration
- Save the sharing settings
Marking views as favorites:
- Open the view
- Click the Star icon
- Access favorite views quickly from the Favorites section
Auto-refresh and real-time updates:
Views can be configured to refresh automatically so new log data appears without manual intervention:
| Refresh Option | Description |
| Auto-Refresh | Automatically reload the view at a set interval — 5s, 10s, 30s, or 1 minute |
| Manual Refresh | Click the Refresh button to reload on demand |
| Real-Time Streaming | Some views support real-time streaming of new logs as they arrive |
Use auto-refresh cautiously with large datasets or broad date ranges — frequent reloads against high-volume categories can impact performance.
Best practices:
- Set a reasonable default date range and column selection for each view so it loads quickly and shows the most relevant data immediately
- Use clear descriptive view names that indicate the view’s purpose so other users can identify the right view at a glance
- Create dedicated views for recurring investigation or monitoring scenarios rather than rebuilding filters from scratch each time
- Share commonly needed views with relevant roles so the whole team works from a consistent starting point
- Use auto-refresh selectively — it is most useful for views monitoring smaller, high-priority datasets in real time
[Your administrator should establish and share a standard set of views for the most common monitoring scenarios in your environment.]