ise_dc_view_administrator_logins
Retrieve and filter Cisco ISE administrator login logs by timestamp, node, IP, and session attributes to audit access.
Instructions
[Report] Administrator Logins: Gives the data about the administrator logins to the ISE Filterable columns include: TIMESTAMP_TIMEZONE, TIMESTAMP, ISE_NODE, ADMIN_NAME, IP_ADDRESS, IPV6_ADDRESS, INTERFACE, ADMIN_SESSION.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| limit | No | Max rows (default 100, max 10000). | |
| order_by | No | Column to sort by (prefix '-' for descending). | |
| days_back | No | Only rows from the last N days (uses the view's time column). | |
| filter_op | No | EQ=exact, CONTAINS/LIKE=substring, GT/LT/GTE/LTE=compare. | EQ |
| deployment | No | Target ISE deployment: name ('RADIUS Only'), slug ('radius-only'), or number ('1' or 'Deployment 1'). Omit to use the only/default deployment. Call ise_list_deployments to see the choices. | |
| filter_value | No | Value to match for the filter column. | |
| filter_column | No | Column to filter on (case-insensitive). |