MAQPNADocs

maqpna audit export

Export audit records, filtered by session, namespace, agent or time

Observe-o json | yaml

Synopsis#

maqpna audit export FILE [--session S] [--namespace NS] [--agent A] [--since RFC3339] [--until RFC3339] [--out FILE]
maqpna audit export --gateway URL [--session S] [--namespace NS] [--agent A] [--user U] [--since RFC3339] [--until RFC3339] [--out FILE]

Flags#

FlagTypeDescriptionDefault
--agentstringagent filternone
--namespacestringnamespace filternone
--outstringwrite bundle to file instead of stdoutnone
--sessionstringsession filternone
--sincestringRFC3339 start (inclusive)none
--untilstringRFC3339 end (exclusive)none
--userstringuser filternone

The global flags (--context, -o, --no-color, ...) work with every command.

Examples#

maqpna audit export --gateway "$GW" --session fix-test-7k2 --out evidence.jsonl

What happens when you run it#

  • Prints a table by default; -o json or -o yaml print the data, and --jq EXPR filters the JSON.

Exit codes#

CodeMeaning
0success
1error (the message says what failed, with a hint when there is one)
2usage error: unknown flag, missing argument or bad value; the synopsis is printed
3a check failed, a change is blocked, or a result did not match (tamper, policy mismatch) (not used by this command)

Terminal demo#

maqpna audit export.cast