Asana Logs

Panther supports pulling logs directly from Asana

Overview

Panther has the ability to fetch Asana audit logs by querying the Asana Audit Log API. The below steps outline how to connect your Asana logs to the Panther Console.

How to onboard Asana logs to Panther

Prerequisites

To connect your Asana logs to Panther, you will need:

  • Your organization's Asana Domain ID

  • A new Service Account in Asana and its Token

Configure your Asana log source

  1. In the left-hand navigation bar of your Panther Console, click Configure > Log Sources.

  2. Click Create New.

  3. Search for “Asana,” then click its tile.

  4. Click Start Setup.

  5. On the next screen, enter a descriptive name for the source, e.g., My Asana logs.

  6. Click Setup.

  7. Enter the credentials required for the integration.

    1. Open a new browser tab and Sign in to your Asana account as an administrator.

    2. Click your profile picture at the top right. Click Admin Console and then click Settings on the left.

    3. At the bottom of the page you'll find the Domain ID. Copy and paste it into the Organization Id field in Panther.

    4. In your Asana account, click Apps on the left sidebar.

    5. At the bottom of the page, click Add Service Account and specify a name.

    6. Copy the token and then click Save changes.

  8. Navigate back to the Panther Console and paste the Asana token into the Service Account Token field in Panther.

  9. Click Setup. You will be directed to a success screen:

    The success screen reads, "Everything looks good! Panther will now automatically pull & process logs from your account"
    • You can optionally enable one or more Detection Packs.

    • The Trigger an alert when no events are processed setting defaults to YES. We recommend leaving this enabled, as you will be alerted if data stops flowing from the log source after a certain period of time. The timeframe is configurable, with a default of 24 hours.

      The "Trigger an alert when no events are processed" toggle is set to YES. The "How long should Panther wait before it sends you an alert that no events have been processed" setting is set to 1 Day

Panther-managed detections

See Panther-managed rules for Asana in the panther-analysis GitHub repository.

Supported log types

Required fields in the schema are listed as "required: true" just below the "name" field.

Asana.Audit

The Audit Logs allow you to monitor and act upon critical events in your organization's Asana instance.

For more information, see the Asana Documentation on Audit Log Events.

Last updated

Was this helpful?