Auditable events for Alibaba Cloud Elasticsearch

更新时间:
复制 MD 格式

Alibaba Cloud Elasticsearch is integrated with ActionTrail. You can query management events generated by user operations in Alibaba Cloud Elasticsearch in ActionTrail, and deliver them to Simple Log Service (SLS) Logstores or Object Storage Service (OSS) buckets for real-time auditing and issue analysis.

ActionTrail records management events generated when you use the console, OpenAPI, or other methods to operate cloud resources. The following table lists the Alibaba Cloud Elasticsearch events that you can query in ActionTrail.

Event name

Event meaning

ActivateZones

Recovers an offline zone in an Elasticsearch instance.

AddConnectableCluster

Configures network connectivity for an Elasticsearch instance.

AddSnapshotRepo

Creates a reference repository when you configure a cross-cluster OSS repository.

CancelDeletion

Cancels release protection for an Elasticsearch instance.

CancelLogstashDeletion

Cancels release protection for a Logstash instance.

CancelTask

Cancels an Elasticsearch data migration task.

CloseDiagnosis

Disables the artificial intelligence for IT operations (AIOps) feature for an Elasticsearch instance.

CloseHttps

Disables the HTTPS protocol for an Elasticsearch instance.

CloseManagedIndex

Disables index hosting for an Elasticsearch instance.

CreateCollector

Creates a Beats data collector.

CreateComponentIndex

Creates an Elasticsearch component template.

CreateDataStream

Creates a data stream. This operation applies only to kernel-enhanced instances for which the Indexing Service is enabled.

CreateDataTasks

Creates an index migration task.

CreateILMPolicy

Creates an index lifecycle management (ILM) policy.

CreateIndexTemplate

Creates an Elasticsearch index template.

createInstance

Creates an Elasticsearch instance.

CreateLogstash

Creates a Logstash instance.

CreatePipelines

Creates a Logstash pipeline.

CreateSnapshot

Manually creates a snapshot backup for an Elasticsearch cluster.

CreateVpcEndpoint

Creates an endpoint in the VPC of an Elasticsearch service account.

DeactivateZones

Takes some zones offline and migrates the nodes in the offline zones to other zones when an Elasticsearch instance has multiple zones.

DeleteCollector

Deletes a Beats data collector.

DeleteComponentIndex

Deletes an Elasticsearch component template.

DeleteConnectedCluster

Deletes an interconnected instance between Elasticsearch clusters.

DeleteDataStream

Deletes the data stream of a specified index in an Elasticsearch cluster.

DeleteDataTask

Deletes an Elasticsearch index migration task.

DeleteDeprecatedTemplate

Deletes a legacy index template from an Elasticsearch cluster.

DeleteILMPolicy

Deletes an ILM policy.

DeleteIndexTemplate

Deletes an Elasticsearch index template.

DeleteInstance

Releases a specified pay-as-you-go Alibaba Cloud Elasticsearch instance.

DeleteLogstash

Releases a specified pay-as-you-go Logstash instance.

DeletePipelines

Deletes a specified Logstash pipeline.

DeleteSnapshotRepo

Deletes the cross-cluster OSS reference repository of the current Elasticsearch cluster.

DeleteVpcEndpoint

Deletes an endpoint in the VPC of an Elasticsearch service account.

DescribeAckOperator

Obtains information about the Elasticsearch Operator that is installed on a specified Container Service for Kubernetes (ACK) cluster.

DescribeApm

Obtains the details of a specified APM Server instance.

DescribeCollector

Obtains the details of a Beats data collector.

DescribeComponentIndex

Obtains the details of an Elasticsearch component index template.

DescribeConnectableClusters

Obtains the Elasticsearch instances that can be connected to the current Elasticsearch instance over the network.

DescribeDynamicSettings

Obtains the dynamic settings of an Elasticsearch cluster.

DescribeElasticsearchHealth

Obtains the health status of an Elasticsearch instance.

DescribeILMPolicy

Obtains the details of an Elasticsearch ILM policy.

DescribeIndexTemplate

Obtains information about an index template of an Elasticsearch cluster.

DescribeInstance

Obtains the details of an Elasticsearch cluster, such as its configuration and network settings.

DescribeKibanaSettings

Obtains the settings of the Kibana node in an Elasticsearch cluster.

DescribeLogstash

Obtains the details of a specified Logstash instance.

DescribePipeline

Obtains the pipeline information of a Logstash instance.

DescribePipelineManagementConfig

Obtains the pipeline management configuration of a Logstash instance.

DescribeRegions

Obtains information about the regions where Alibaba Cloud Elasticsearch is available.

DescribeSnapshotSetting

Obtains the data backup settings of an Elasticsearch cluster.

DescribeTemplates

Obtains the scenario-specific template configurations of an Elasticsearch instance.

DescribeXpackMonitorConfig

Obtains the X-Pack monitoring configuration of a Logstash instance.

EstimatedLogstashRestartTime

Obtains the estimated restart time for a Logstash instance.

EstimatedRestartTime

Obtains the estimated restart time for an Elasticsearch instance.

GetClusterDataInformation

Obtains the metadata of an Elasticsearch cluster.

GetElastictask

Obtains the auto scaling rules of an Elasticsearch cluster.

GetOpenStoreUsage

Obtains the storage capacity and usage of an OpenStore instance.

GetSuggestShrinkableNodes

Obtains the Elasticsearch nodes that can be scaled in.

GetTransferableNodes

Obtains the Elasticsearch nodes from which data can be migrated.

InitializeOperationRole

Creates a service-linked role.

InstallAckOperator

Installs the Elasticsearch Operator that is required by a data collector when you create a Beats-ACK data collector.

InstallKibanaSystemPlugin

Installs a preset Kibana plugin.

InstallLogstashSystemPlugin

Installs a preset Logstash plugin.

InstallSystemPlugin

Installs a preset Elasticsearch plugin.

InstallUserPlugins

Installs a custom Elasticsearch plugin.

InterruptElasticsearchTask

Interrupts a change task for an Elasticsearch instance.

InterruptLogstashTask

Interrupts a change task for a Logstash instance.

ListAckClusters

Obtains a list of ACK clusters when you create a Beats-ACK data collector.

ListAckNamespaces

Obtains the namespaces of an ACK cluster when you create a Beats-ACK data collector.

ListAllNode

Obtains information about all nodes in an Elasticsearch cluster.

ListAlternativeSnapshotRepos

Obtains the OSS reference repositories that can be added to the current Elasticsearch instance.

ListApm

Obtains a list of APM instances.

ListAvailableEsInstanceIds

Obtains a list of available Elasticsearch instances that have X-Pack monitoring capabilities when you configure X-Pack monitoring for a Logstash instance.

ListCollectors

Obtains a list of Beats data collectors.

ListComponentIndices

Obtains a list of Elasticsearch component indexes.

ListConnectedClusters

Obtains a list of Elasticsearch instances that are connected to the current Elasticsearch instance over the network.

ListDataStreams

Obtains a list of data streams in an Elasticsearch cluster.

ListDataTasks

Obtains information about data migration tasks for an Elasticsearch cluster.

ListDefaultCollectorConfigurations

Obtains the initial default configurations of a data collector when you create a Beats data collector.

ListDeprecatedTemplates

Obtains a list of legacy index templates for an Elasticsearch instance.

ListDictInformation

Obtains and verifies the details of a user's dictionary file in OSS when you add the file.

ListDicts

Obtains the details of a dictionary of a specified type and a signed public URL for download.

ListEcsInstances

Obtains a list of ECS instances when you create a Beats-ECS data collector.

ListExtendfiles

Obtains the extension file configurations of a Logstash instance.

ListILMPolicies

Obtains a list of existing Elasticsearch ILM policies.

ListIndexTemplates

Obtains a list of existing Elasticsearch index templates.

ListInstanceHistoryEvents

Obtains a list of hardware O&M events that are triggered for an Elasticsearch cluster.

ListInstanceIndices

Obtains a list of indexes in an Elasticsearch cluster.

ListKibanaPlugins

Obtains a list of Kibana plugins.

ListLogstash

Obtains a list of details for all or specified Logstash instances.

ListLogstashLog

Views the logs of a Logstash instance.

ListLogstashPlugins

Obtains a list of details for all or specified Logstash plugins.

ListNodes

Views the status of the ECS instances on which Beats data collectors are installed.

ListPipeline

Obtains a list of pipelines for a Logstash instance.

ListPipelineIds

Obtains the IDs of Logstash pipelines.

ListPlugins

Obtains a list of plugins for an Alibaba Cloud Elasticsearch instance.

ListSearchLog

Views the logs of an Elasticsearch instance.

ListShardRecoveries

Obtains a list of data recovery progress for ongoing and completed shard recoveries in an Elasticsearch instance.

ListSnapshotReposByInstanceId

Obtains a list of cross-cluster OSS repository settings for an Elasticsearch instance.

ListTagResources

Obtains a list of visible resource-tag relationships.

ListTags

Obtains a list of all visible user tags.

ListVpcEndpoints

Obtains a list of endpoint statuses in the VPC of an Elasticsearch service.

MigrateToOtherZone

Migrates nodes from a source zone to a destination zone in an Elasticsearch instance.

ModifyDeployMachine

Updates the ECS instances where a Beats data collector is installed.

ModifyElastictask

Updates the auto scaling rules of an Elasticsearch instance.

ModifyInstanceMaintainTime

Enables and updates the maintenance window for an Elasticsearch instance.

ModifyWhiteIps

Updates the access whitelist of an Elasticsearch instance.

MoveResourceGroup

Moves an Elasticsearch instance to another resource group.

OpenDiagnosis

Enables the AIOps feature for an Elasticsearch instance.

OpenHttps

Enables the HTTPS protocol for an Elasticsearch instance.

PostEmonTryAlarmRule

Sends an alert message.

RebootInstanceNode

Restarts an ECS node in an Alibaba Cloud Elasticsearch instance.

RecommendTemplates

Obtains recommended configurations for an Elasticsearch cluster.

ReinstallCollector

Retries the installation of a Beats data collector that failed to be installed during creation.

RemoveApm

Deletes an APM instance.

RenewInstance

Renews a subscription Elasticsearch instance.

RestartCollector

Restarts a Beats data collector.

RestartInstance

Restarts an Elasticsearch instance.

RestartLogstash

Restarts a Logstash instance.

ResumeElasticsearchTask

Resumes an interrupted change task for an Elasticsearch instance.

ResumeLogstashTask

Resumes an interrupted change task for a Logstash instance.

RolloverDataStream

Manually rolls over a matching index under a data stream.

RunPipelines

Immediately deploys a Logstash pipeline.

ShrinkNode

Performs a node scale-in operation for an Elasticsearch instance.

StartApm

Starts an APM instance.

StartCollector

Starts a Beats data collector.

StopApm

Stops an APM instance.

StopCollector

Stops a running Beats data collector.

StopPipelines

Stops a running Logstash pipeline.

TagResources

Creates a relationship between a tag and a resource.

TransferNode

Executes an Elasticsearch data migration task.

TriggerNetwork

Enables or disables public or internal access to an Elasticsearch or Kibana cluster.

UninstallKibanaPlugin

Uninstalls an installed Kibana plugin.

UninstallLogstashPlugin

Uninstalls an installed Logstash plugin.

UninstallPlugin

Uninstalls an installed Elasticsearch plugin.

UntagResources

Deletes a relationship between a user tag and a resource.

UpdateAdminPassword

Updates the password of the elastic account for an Elasticsearch instance.

UpdateAdvancedSetting

Changes the Garbage Collector configuration of an Elasticsearch instance.

UpdateAliwsDict

Updates the dictionary file of the AliNLP analysis plugin (analysis-aliws).

UpdateApm

Updates the configuration of an APM instance.

UpdateCollector

Updates the configuration of a Beats data collector.

UpdateCollectorName

Modifies the name of a Beats data collector.

UpdateComponentIndex

Updates the configuration of an Elasticsearch component index template.

UpdateDescription

Updates the name of an Elasticsearch instance.

UpdateDiagnosisSettings

Updates the AIOps scenario settings for an Elasticsearch instance.

UpdateDict

Cold updates the IK analysis plugin for an Alibaba Cloud Elasticsearch instance, including the main IK dictionary and the IK stopword dictionary.

UpdateExtendConfig

Updates the scenario-specific configuration template of an Elasticsearch cluster.

UpdateExtendfiles

Updates the extension file configurations of a Logstash instance.

UpdateHotIkDicts

Hot updates the IK analysis plugin for an Alibaba Cloud Elasticsearch instance, including the main IK dictionary and the IK stopword dictionary.

UpdateILMPolicy

Updates the ILM policy configuration of an Elasticsearch instance.

UpdateIndexTemplate

Updates the index template configuration of an Elasticsearch instance.

UpdateInstance

Changes the configuration of an Elasticsearch instance.

UpdateInstanceChargeType

Converts a pay-as-you-go Elasticsearch instance to a subscription instance.

UpdateInstanceSettings

Updates the YML parameter settings of an Elasticsearch instance.

UpdateKibanaSettings

Updates the Kibana configuration.

UpdateKibanaWhiteIps

Updates the Kibana access whitelist.

UpdateLogstash

Updates some information about a Logstash instance, such as the number of nodes, quota, name, and disk size.

UpdateLogstashDescription

Updates the name of a Logstash instance.

UpdateLogstashSettings

Updates the configuration of a Logstash instance.

UpdatePipelineManagementConfig

Updates the management method for a Logstash pipeline.

UpdatePipelines

Updates the information of a Logstash pipeline.

UpdatePrivateNetworkWhiteIps

Updates the VPC internal access whitelist for an Elasticsearch instance.

UpdatePublicNetwork

Enables or disables the public endpoint of an Elasticsearch instance.

UpdatePublicWhiteIps

Updates the public endpoint access whitelist for an Elasticsearch instance.

UpdateReadWritePolicy

Enables or disables the high-availability (HA) write feature for an Elasticsearch instance. This feature is supported only for instances in the China (Beijing) region.

UpdateSnapshotSetting

Updates the data backup settings of an Elasticsearch instance.

UpdateSynonymsDicts

Updates the synonym dictionary of an Elasticsearch instance.

UpdateTemplate

Modifies the content of a scenario-specific template configuration for an Elasticsearch instance.

UpdateWhiteIps

Updates the VPC internal access whitelist for an Elasticsearch instance.

UpdateXpackMonitorConfig

Updates the X-Pack monitoring and alerting configuration for a Logstash instance.

UpgradeEngineVersion

Upgrades the instance version or kernel patch version of Elasticsearch.

ValidateConnection

Verifies the connectivity of the Elasticsearch instance that provides X-Pack monitoring in the monitoring and alerting configuration of a Logstash instance.

ValidateShrinkNodes

Verifies whether specific nodes in an Elasticsearch instance can be scaled in.

ValidateSlrPermission

Verifies whether a service-linked role has been created.

ValidateTransferableNodes

Verifies whether data on specific nodes in an Elasticsearch instance can be migrated.