> ## Documentation Index
> Fetch the complete documentation index at: https://docs.levelblue.com/llms.txt
> Use this file to discover all available pages before exploring further.

# USM Central System Events List View

<Icon icon="users" iconType="solid" /> Role Availability | ❌ Read-Only ✔️ Analyst ✔️ Manager

USM Central provides a centralized view of your system events. Go to **Settings > System Events**.

The system events page displays information on any events generated within your environment. On the left you can find the search and filters options. In the upper-left side of the page, you can see any filters you have applied, and you have the option to create and select different views of the system events. The main part of the page is the actual list of system events. Each row describes an individual system event.

If you want to analyze the data, you can maximize the screen and hide the filter pane. Click the <img src="https://mintcdn.com/levelblue-5324744e/cXQBEU4dvbfLKeHt/images/usm-central/to-close-filter-sidebar.svg?fit=max&auto=format&n=cXQBEU4dvbfLKeHt&q=85&s=20c8fa495276af9843814645f7328035" className="inline m-0" width="20" height="20" data-path="images/usm-central/to-close-filter-sidebar.svg" /> icon to hide the filter pane. Click the <img src="https://mintcdn.com/levelblue-5324744e/haOyIuLArpjqP37y/images/usm-central/to-open-filter-sidebar.svg?fit=max&auto=format&n=haOyIuLArpjqP37y&q=85&s=6601933b7c79169a3ad8ae52a57a66c0" className="inline m-0" width="20" height="20" data-path="images/usm-central/to-open-filter-sidebar.svg" /> icon to expand the filter pane.

<Note>
  By default, the list will display all System Events created during the last 24 hours.
</Note>

The following table displays the list of the default columns found in the List view.

**List of the Default Columns in the System Events Page**

| Column Field Name | Description                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                  |
| ----------------- | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------ |
| Event Name        | Name of the event.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                           |
| Time Created      | The date and time of the creation of the event. The displayed date depends on your computer's time zone.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                     |
| Source Address    | IP address of the event or computer that it takes place on.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                  |
| Source            | Email of the user that the action is being performed on. For example, if user [email@mycompany.com](mailto:email@mycompany.com) modifies or creates user [new@mycompany.com](mailto:new@mycompany.com), then the destination email is [new@mycompany.com](mailto:new@mycompany.com).                                                                                                                                                                                                                                                                                                                         |
| Affected Resource | Email of the user that performed the action. For example, when user [email@mycompany.com](mailto:email@mycompany.com) logs in, the source email is [email@mycompany.com](mailto:email@mycompany.com).                                                                                                                                                                                                                                                                                                                                                                                                        |
| Event outcome     | Indicates if the action was success and completed or if it failed.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                           |
| Event Details     | It is a small description of what was changed in the system event.<br /><br />It only gets populated for certain actions and indicates what is being changed. Most of these are user changes (for example, when a user is suspended, a locked status is reset, <Tooltip tip="A method of access control in which a user is granted access only after successfully presenting several separate pieces of evidence to an authentication mechanism – typically at least two of the following categories: knowledge, possession, and inherence.">MFA</Tooltip> is enabled or disabled, or a password is updated. |

Click the <img src="https://mintcdn.com/levelblue-5324744e/ZS7tUvuIZXE1ELcm/images/usm-central/star.svg?fit=max&auto=format&n=ZS7tUvuIZXE1ELcm&q=85&s=d70bbccd8d590bc37f56778d4167c1cd" className="inline m-0" width="20" height="20" data-path="images/usm-central/star.svg" /> icon to bookmark an item for quick access.

<Note>
  You can view your bookmarked items by going to the secondary menu and clicking the <img src="https://mintcdn.com/levelblue-5324744e/ZS7tUvuIZXE1ELcm/images/usm-central/star.svg?fit=max&auto=format&n=ZS7tUvuIZXE1ELcm&q=85&s=d70bbccd8d590bc37f56778d4167c1cd" className="inline m-0" width="20" height="20" data-path="images/usm-central/star.svg" /> icon. This will display all of your bookmarked items and provide direct links to each of them.
</Note>

You can choose the number of items to display by selecting **20**, **50**, or **100** below the table. You can classify some columns by clicking the icons to the right side of the heading. You can sort the item information in ascending or descending order.
