Wyrd documentation

Console

Logs and alerts

Answers the question Where do you look at device events?

The log

The Audit section searches the security and network logs that Android itself keeps and hands to the server. The query is written in LogsQL, the period is chosen with the buttons, the source and level with the filters.

Audit

Logging is enabled per device, by a command from its page. While it is off, no events are collected.

The log store runs on your server next to the Wyrd server. Events do not leave it.

Alerts

Alert rules match events against a condition and raise a record when it holds: failed unlock attempts, a device that stopped connecting, a patch level that fell behind and left vulnerabilities open.

Dashboard

The dashboard collects what needs attention: how many devices are online, which ones stopped connecting, which have open vulnerabilities.