HP 3PAR StoreServ 7400 2-node HP 3PAR Policy Server Administrator's G - Page 59

Audited Operations, Agent registers with Policy Server

Page 59 highlights

Audited Operations HP 3PAR Policy Server generates audit log entries for the following activities performed by a Policy Server user: • Log in to or out of the application. • Accept or deny a pending request for an action. • Modify a policy. • Create, modify, or delete a permission for a policy. • Create, modify, delete, or assign a filter to a permission. • End a remote session. • Modify the configuration of an asset group. • Modify the details of an asset. • Create, modify, or delete profiles, roles, and users. HP 3PAR Policy Server generates audit log entries for the following activities that are not initiated by a Policy Server user but result from Agent communication with Policy Server: • An action pending approval times out before it is accepted or denied. • Agent registers with Policy Server • Agent forwards a message or command received from the HP 3PAR Enterprise Server; for example, messages about operations that were successful, failed, and denied. • Agent sends a request to perform an action that has an access right of "Ask for Approval". • After receiving approval for an action, Agent performs the action. • Agent performs an action that has an access right of "Always Allow". The message sent to the audit log includes the name of the user who requested the action, the action that was performed, and the success or failure of executing the action. • Agent denies an action that has an access right of "Never Allow". The message sent to the audit log includes the name of the user who attempted to perform the action, information about the action that was rejected (specific to the type of action), and the permission that caused the action to be rejected. • Agent starts or stops a remote session that was requested by a user through the HP 3PAR Enterprise Server. • Agent ends a remote session at the request of a Policy Server user. HP 3PAR Policy Server 6-9

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87

HP 3PAR Policy Server
6-9
Audited Operations
HP 3PAR Policy Server generates audit log entries for the following activities performed by a Policy Server
user:
Log in to or out of the application.
Accept or deny a pending request for an action.
Modify a policy.
Create, modify, or delete a permission for a policy.
Create, modify, delete, or assign a filter to a permission.
End a remote session.
Modify the configuration of an asset group.
Modify the details of an asset.
Create, modify, or delete profiles, roles, and users.
HP 3PAR Policy Server generates audit log entries for the following activities that are not initiated by a
Policy Server user but result from Agent communication with Policy Server:
An action pending approval times out before it is accepted or denied.
Agent registers with Policy Server
Agent forwards a message or command received from the HP 3PAR Enterprise Server; for example,
messages about operations that were successful, failed, and denied.
Agent sends a request to perform an action that has an access right of “Ask for Approval”.
After receiving approval for an action, Agent performs the action.
Agent performs an action that has an access right of “Always Allow”. The message sent to the audit
log includes the name of the user who requested the action, the action that was performed, and the
success or failure of executing the action.
Agent denies an action that has an access right of “Never Allow”. The message sent to the audit log
includes the name of the user who attempted to perform the action, information about the action that
was rejected (specific to the type of action), and the permission that caused the action to be rejected.
Agent starts or stops a remote session that was requested by a user through the HP 3PAR Enterprise
Server.
Agent ends a remote session at the request of a Policy Server user.