> For the complete documentation index, see [llms.txt](https://ztrust.gitbook.io/ztrust-documentation/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://ztrust.gitbook.io/ztrust-documentation/user-manual-ztrust-v2.0/guide-to-navigation/events/user-events.md).

# User events

<figure><img src="https://1778922777-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F3EUK5AUZv0UVaI5S0CTM%2Fuploads%2FMRj8aphGha8NVdOPDFSs%2Fimage.png?alt=media&amp;token=451e77bb-9cec-43a0-89df-f17865ae4fc6" alt=""><figcaption></figcaption></figure>

In the Events section, within the User Events tab, various actions carried out by end users can be observed.

<figure><img src="https://1778922777-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F3EUK5AUZv0UVaI5S0CTM%2Fuploads%2FtEVgJJif0hnALZKE0Q5X%2F1.png?alt=media&amp;token=f9727f0d-dcb6-4d1d-8652-32f821e3e68b" alt=""><figcaption></figcaption></figure>

#### **Time**

It denotes the Timing of a specific event.

#### **User**

It specifies the User ID of the user who executed this event.

#### **Event saved type**

It refers to the type of event.

There are various types of events which are broadly divided into three types -

* Login Events
* Brute Force Protection
* Account Events

<table><thead><tr><th width="191.33333333333331"></th><th width="197">Event Types</th><th>Description</th></tr></thead><tbody><tr><td>Login Events</td><td>Login</td><td>During this event, a user initiates a login.</td></tr><tr><td></td><td>Register</td><td>Here, a user registers.</td></tr><tr><td></td><td>Logout</td><td>The user signs out of the session.</td></tr><tr><td></td><td>Code to Token</td><td>An application or client, exchanges a code for a token.</td></tr><tr><td></td><td>Refresh Token</td><td>An application or client renews a token.</td></tr><tr><td>Brute Force Protection</td><td>User disabled by permanent lockout</td><td>Brute Force Protection disabled the user account permanently due to a large number of failed login attempts.</td></tr><tr><td></td><td>User disabled by temporary lockout</td><td>Brute Force Protection disabled the user account temporarily due to a large number of failed login attempts.</td></tr><tr><td>Account Events</td><td>Social Link</td><td>A user account linked to a social media provider.</td></tr><tr><td></td><td>Remove Social Link</td><td>The link between the user account and social media provider breaks off.</td></tr><tr><td></td><td>Update Email</td><td>The email address for an account is changed.</td></tr><tr><td></td><td>Update Profile</td><td>The profile of a user account is modified.</td></tr><tr><td></td><td>Send Password Reset</td><td>Ztrust sends an email for password reset to the user.</td></tr><tr><td></td><td>Update Password</td><td>The password for an account is modified.</td></tr><tr><td></td><td>Update TOTP</td><td>The Time-based One-time Password (TOTP) settings for an account changes.</td></tr><tr><td></td><td>Remove TOTP</td><td>ZTrust removes Time-based One-time Password (TOTP) from an account.</td></tr><tr><td></td><td>Send Verify Email</td><td>ZTrust sends an email verification email to the user.</td></tr><tr><td></td><td>Verify Email</td><td>ZTrust verifies the email address for an account.</td></tr></tbody></table>

There is a corresponding Error event for each of the above.

For more details refer to [User Manual - Event Type](/ztrust-documentation/user-manual-ztrust-v2.0/admin-manual/event-type.md)

#### **IP Address**

It specifies the IP Address of the device from which this event was executed.

#### **Client**

It identifies the name of the client associated with that specific event.

You can use the search box to find a specific user.

<figure><img src="https://1778922777-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F3EUK5AUZv0UVaI5S0CTM%2Fuploads%2FichHBinzPMNMbOSb1rKd%2F2.png?alt=media&amp;token=a2606dc4-b833-4f1f-9ad8-d7c5945bf02b" alt=""><figcaption></figcaption></figure>

To filter the events or search for a particular event, click on the dropdown and enter the specific detail.

#### **User ID**

Enter the User ID, then click on Update to display events corresponding to that user ID.

#### **Event saved type**

<figure><img src="https://1778922777-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F3EUK5AUZv0UVaI5S0CTM%2Fuploads%2FcIlmKLQCtPyaOWKR1G6U%2F3.png?alt=media&amp;token=7688f354-d063-4d23-b028-4aeb734f392c" alt=""><figcaption></figcaption></figure>

By clicking on the dropdown and selecting the Event saved type and clicking on Update, all events corresponding to the selected type will be shown.

#### **Client**

Specify a client name, then after clicking on Update, events associated with that specific client will be displayed.

#### **Date (From) and Date (To)**

After specifying the Date (From) and Date (To), and clicking on Update events that occurred within this specified time frame will be displayed.

<figure><img src="https://1778922777-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F3EUK5AUZv0UVaI5S0CTM%2Fuploads%2FVuCG8MGPzp74VMg96Uvh%2F4.png?alt=media&amp;token=b34c3eed-f0f5-4083-8d65-8cbf5b9c6f8b" alt=""><figcaption></figcaption></figure>

#### **IP Address**

After you've entered the IP Address of the device and clicked on Search events, you'll be presented with the list of relevant events.

#### **Search events**

Once you've entered the necessary details, to search for user events matching those criteria, click on Search events.

#### **Reset**

If you've entered the necessary details but decide not to search for user events matching those criteria, you can click on Reset.

Click the Refresh button to see the latest settings.

<figure><img src="https://1778922777-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F3EUK5AUZv0UVaI5S0CTM%2Fuploads%2FP4zZKo5L0NgUwyQ9nXZx%2F5.png?alt=media&amp;token=e5ac15f2-54ae-4818-9536-fa0325bc3b3b" alt=""><figcaption></figcaption></figure>

You can also choose how many user events you want to display on one screen. Select your preferred option from the dropdown menu as shown above.
