CommandLog_Ocr
This log type applies only to RDP Proxy and contains text logs captured via OCR during remote desktop connections in Kron PAM. The packets are sent to the server in the following format:
sessionId | Specific ID of the log in the PAM Database |
|---|---|
userName | The username that transferred the file during the remote connection |
host | Kron PAM Host IP |
tenantId | Tenant, the command log was captured. |
sessionStartTime | When the session started |
sessionEndTime | When the session finished |
globalUserName | GlobalUserName is used for authentication |
clientIp | Source IP of the device that executed the command |
commandTime | Exact time the file transfer started |
command | Captured texts via OCR |
allowed | If the executed command is allowed by the administrator or not allowed=true is the default value for RDP sessions |
instanceName | An instance in which the command log was captured. |
deviceGroups | Group names of the device on which the command is executed |
Example:
An OCR text captured logs during a remote desktop session of a Test user on Kron PAM: