Auditing and Managing OAuth 2.0 Authorizations

Account administrators can use web services reports to audit and revoke authorizations granted by OpenAir users to integration applications utilizing OAuth 2.0 to connect to OpenAir data.

The reports include information about which integration applications were authorized, when, and by which users. The reports also include a link to revoke the authorization given for an integration application by a user.

To access the OAuth 2.0 authorizations logs (if the Report Management feature is enabled):

  1. In OpenAir, go to Reports > Management.

  2. Enter “web services” in the Search saved reports by name box. The Report Management UI shows the list of web-services tabular reports.

  3. Click the report name, then click New to create a new report.

  4. Add columns and define filters as required.

  5. (Optional) Click Untitled in the top bar and enter a name for your report.

  6. (Optional) Click Save to save the report you created for later use. The Report Management UI will list the report under on Saved reports tab.

  7. Click Run to run the report.

Report Management feature in OpenAir - OAuth2.0 user authorization logs

To access the OAuth 2.0 authorizations logs (if the Report Management feature is not enabled):

  1. In OpenAir, go to Reports > Detail.

  2. Click the report name under the Web services heading. The report options form appears.

  3. (Optional) Set a date range for the Authorization granted filter. Defaults to All.

  4. Click Report layout and select the columns to include, or keep the default layout.

  5. (Optional) Click Employee and select the employees to include in the report.

  6. (Optional) Click API integration application and select the applications to include in the report.

  7. (Optional) Check the Save this report as box and enter a name for the report

  8. (Optional) Click Save to save the report. The report will be accessible in Reports > Saved reports.

  9. Click Run to run the report.