Browse: Home / Event Logs Overview – Workspace One UEM (AirWatch)

Menu

Skip to content
  • Privacy Policy
  • Advertise with us
  • About Me
  • Home

WSO UEMLogo

VMware EUC Destination

Menu

Skip to content
  • Home
  • Digital Workspace/EUC
  • VMware Social Media Advocacy
  • Business Continuity with VMware Workspace ONE
  • Watch 44 Technical Breakout Sessions At Your Convenience
  • HCI as Virtual Desktop Infrastructure (VDI)
  • Enhance Chrome Management with the Workspace ONE UEM Extension
  • Top General Tools for WSOUEM Troubleshooting-Workspace One UEM (AirWatch)
  • You are not allowed to enroll your device. This device is registered to another user - Workspace One UEM (AirWatch)
  • How to allow clock, Network and Battery status on Secure Launcher - Workspace One UEM (AirWatch)
  • Enrollment Blocked - Workspace One UEM (AirWatch)
  • com.airwatch.lockdown.launcher blocked by the - Workspace One UEM (AirWatch)
  • Event Logs Overview - Workspace One UEM (AirWatch)
  • Files that make up a virtual machine (VM)
  • Workspace One UEM | How to renew an APNs Certificate?
  • 53 Top Free Tools for VMware Administrators

Event Logs Overview – Workspace One UEM (AirWatch)

Posted by Pratheesh K on March 10, 2019 in Workspace One UEM | 1,743 Views | Leave a response

In this blog, we will discuss Workspace One UEM (AirWatch) Event logs. This was asked by many of my customers hence, i decided to create a post with the event details here.

Workspace One UEM (AirWatch) Event are records of administrative and device actions that the AirWatch Console stores in logs. The event logs show both device events and AirWatch Console events. Device events show the commands sent from the AirWatch Console to devices, device responses, and device user actions. The AirWatch Console events show actions taken from the AirWatch Console including login sessions, failed login attempts, admin actions, system settings changes, and user preferences.

Events NameDescription
SecurityInformationWhen the query command is requested and sent from device to console in bytes
SecurityInformationConfirmedWhen the query command is requested and is confirmed by the device
InstallProvisioningProfileRequestedWhen installation of Provisioning Profile is requested
InstallApplicationRequestedWhen installation of App is requested
InstallProfileRequestedWhen installation of Profile is requested
InstallProfileConfirmedWhen installation of Profile is confirmed
InstallApplicationConfirmedWhen installation of App is confirmed
SecureChannelCheckInIs for the AirWatch app registration
DeviceOperatingSystemChangedWhen the OS is changed or upgraded on the device
ContentAddedWhen a Content is added on the console
AppCatalogLaunchWhen the App Catalog is launched at the device
HmacAuthenticationFailureWhen the HMAC authentication is failed from the device end
InstallApplicationFailedWhen the app install Is failed from Server
RemoveProfileRequestedWhen removal of profile is requested from console
InstallProvisioningProfileConfirmedWhen installation of Provisioning Profile is confirmed
AuthenticationErrorWhen an invalid token is passed at the time of enrollment we see the Authentication Error
ApplicationDownloadThis is Application Download event is from App Catalog
RemoveProfileConfirmedWhen removal of Profile is confirmed
ComplianceStatusChangedWhen there is Compliance status change at the device end
LocationGroupChangedWhen the Location Group information is changed
CertificateIssuedWhen the certificate issue command is processed on the device
AppleTokenUpdateCompleteAt the time of enrollment when the APNs Token Update Complete is confirmed for the device
AppleOsXmdmDeviceTokenUpdateWhen the APNs token update message is received from the device
CompromisedStatusChangedWhen there is Compromised status change at the device end
MDMConfigurationThe MDMConfiguration event is triggered when an MDM profile is generated for Apple devices.
MDMEnrollmentStartedAfter the device sends the first sample at the time of enrollment the server acknowledges it
MDMEnrollmentAuthenticationAfter the device authenticates at the time of enrollment the server acknowledges it
SampleListsRequestedContains all the sample information requested like Deviceinformation, App list, Cert list sample, profile list etc
MDMEnrollmentCompleteAfter the device is enrollment the server acknowledges it
RemoveProfileFailedWhen the remove profile command from console to device is failed
AvailableOsUpdatesConfirmedWhen the OS update sent from console is confirmed by device
AvailableOSUpdatesListThe device will notify the console about the OS update available 
ContentVersionAddedWhen there is a new content version added on the console
DeleteDeviceRequestedWhen Delete Device is requested from Console
BreakMDMConfirmedWhen the device confirms the Break MDM to be received
EULAAcceptedWhen the Terms of use is accepted at the time of enrollment by the device
BreakMDMRequestedWhen Break MDM is requested to the device
ComplianceNotificationSentWhen the Complaince status Notification is sent from console
ComplianceStatusChangedWhen there is a change in the Compliane status on the console
WipeRequestWhen the Wipe Request is sent from console to device
AdminSessionEndedDueToInactivityWhen the console session times out for an admin
InstallProfileFailedWhen the install profile command is failed from console to the device
ContentEditWhen the content is edited on the console
RevokedWhen the certificates are revoked
DeviceEnterpriseWipeRequestedWhen Enterprise Wipe is requested from console to the device
SyncGroupFailureEventWhen the directory sync is failed for a User Group
UserEnrollmentTokenCreatedWhen enrollment token is created for a user account on console
ApplicationInstallOnDeviceRequestedWhen the user is trying to install an app this event is captured
RemoveApplicationRequestedWhen the application removal command is requested from server to device
AppListSampleFailedWhen the query apps is performed from console is initiated and failed
SmartGroupsModifiedWhen Smart Groups are modfied on console
SecurityInformationRequestedWhen the query command is requested
AvailableOsUpdatesRequestedWhen the OS update information is queried
AddMissingUserFailureEventWhen an existing AD User Group fails to update members
MemDeviceWhiteListWhitelisting a device on email list view
ApplicationPublishedWhen a new application is published on the console
MemDeviceApplyDefaultRulesWhen the default emails rules are applied
AddMissingAdminFailureWhen an existing AD Admin Group fails to update admin accounts
AvailableOsUpdatesFailedWhen the OS update information is queried and failed to update
ApplicationRemoveFromDeviceRequestedWhen the Application Removal command from the Device is Requested
ApplicationModifiedWhen the application is modified on the console
RemoveApplicationConfirmedWhen App removal is confirmed by the device
ProfileInstallOnDeviceRequestedWhen the user is trying to install a profile this event is captured
SearchMissingUserFailureEventWhen we perform the Add missing users for a User Group this command is captured
InstallProvisioningProfileFailedWhen the install provisional profile command from console is failed to the device
RemoveProvisioningProfileRequestedWhen removal of provisioning profile is requested from console to the device
DeviceLockRequestedWhen Device Lock command is requested from console
DeviceDataModfiedWhen Device Details are modified on the console
AdminUserRoleAssignmentAddedWhen a the role assignment is added for the admin user on the console
AdminUserAddedWhen a new admin user us added to console
ActivationLockBypassCodeSampleSaveThe activation bypass code initially provided to the MDM by the device
UserGroupPermissionsModifiedWhen the User Group permissions are modified on the console
UserGroupDirectorySyncCompletedWhen the Directory sync for User Group is completed on the console
UserGroupAddedWhen the User Group is added to the console
UserDeletedWhen the user account is deleted from console
UnAuthorizedSecurityPinWhen an incorrect security pin is keyed in on the console for an action which requires pin
SmartGroupsCreatedWhen SmartGroups are created on the console
SendMessageConfirmedWhen the message is sent from console to device and when the device confirm receiving it
MemSyncMailboxesFailedWhen the Sync Mailbox command is failed from console to exchange
EditDeviceWhen Edit device is performed
DeviceLockConfirmedWhen the Device Lock command is confirmed from Device
DeviceAttributeAssetNumberModifiedWhen the Asset Number is modified from the console
ApplicationAddedWhen a new app is added on console
SecureChannelCheckInAirWatch app registration.
AuthenticationErrorWhen an invalid token is passed at the time of enrollment we see the Authentication Error.
AppleOsXmdmDeviceTokenUpdate When the APNs token update message is received from the device.

I hope this is informative for you. Thanks for Reading! Be Social and share it in social media, if you feel worth sharing it.

Posted in Workspace One UEM | Tagged AirWatch, Events, Workspace One UEM

Related Posts

Workspace One UEM | How to renew an APNs Certificate?→

Top General Tools for WSOUEM Troubleshooting-Workspace One UEM (AirWatch)→

You are not allowed to enroll your device. This device is registered to another user – Workspace One UEM (AirWatch)→

How to allow clock, Network and Battery status on Secure Launcher – Workspace One UEM (AirWatch)→

DISCLAIMER

The postings on this site are my own and don’t necessarily represent my current or previous employer positions, strategies or opinions. It is solely my and ONLY my opinion.

Useful Tools

  1. DNS Propagation checker
  2. Port Forwarding Tester
  3. SSL Checker
  4. SSL Labs
  5. Java keystore GUI
  6. NMap
  7. Postman

Categories

 
 
 
 

Copyright © 2020 WSOUEM, Pratheesh K. All rights reserved.

Menu

  • Privacy Policy
  • Advertise with us
We use cookies to ensure that we give you the best experience on our website. If you continue to use this site we will assume that you are happy with it.OkPrivacy policy