Tracked encryption activity events display under the BYOK filter in Audit.

These encryption activity (BYOK) events display:

Event CodeEvent MessageAssociated Object ID
DSM-071
displays as:
DSM-DAO0071I
Create key pair with key The user ID associated with the action to create the key pair with key.
DSM-072
displays as:
DSM-DAO0072I
Delete key pair with key The user ID associated with the action to delete the key pair with key.
DSM-239
displays as:
DSM-DAO0239I
Create symmetric key with keyThe user ID associated with the creation of a symmetric key.

Note: The same key is used for both encryption and decryption.
DSM-240
displays as: 
DSM-DAO0240I  

Delete symmetric key


The user ID associated with the created symmetric key.
DSM-267
displays as: 
DSM-DAO0267I 
A user logged inThe user ID associated with the login.
DSM-405
displays as:
DSM-DAO0405I
Assigned roles to a user in the domainThe user ID associated with the action to add a user to the domain.
DSM-406
displays as:
DSM-DAO0406I
Remove user from domainThe user ID associated with the action to remove a user to the domain.
DSM-425
displays as:
DSM-DAO0425I
Enable user in a domainThe user ID associated with the action to remove a user to the domain enable a user in a domain.
DSM-426
displays as: 
DSM-DAO0426I 
Switch the domainThe user ID associated with the action to switch the domain.
DSM-576
displays as: 
DSM-DAO576I
Update KeyThe user ID associated with the key update.
DSM-674
displays as:
DSM-DAO0674I
Create key attributeThe user ID associated with the action to Create a key attribute.

If your Anaplan tenant is hosted on Google Cloud Platform (GCP), enhanced audit events display (BYOK, not the DSM prefix). See Enhanced BYOK events.