HP 3PAR Policy Server Administrator's Guide (QR483-96003, December 2012)

HP 3PAR Policy Server 6-8
Audit Log Entries
Audit log entries are stored in a log file on the computer running Policy Server; by default, under the
PolicyServer/audit directory. Files are created daily, and all audit log messages generated for each day (from
12:00 to 23:59) are saved to the file. By default, the daily files are created using the following syntax:
APM_Audit_<yyyy>_<mm>_<dd>.txt, where yyyy is the current four-digit year, mm is the current month,
and dd is the current day. There are no bounds on how large these files can grow, so make sure to keep track
of disk space used and archive the files as needed.
You can set how long to retain audit logs and the categories you want to log from the Actions panel of the
Audit Log tab in the Policy Server application, as follows:
1. Log in to the Policy Server application as a user with the View privilege for the Audit Log tab.
2. Click the Audit Log tab, and in the Actions panel, expand CONFIGURE to display the options:
As you can see in this example, the default number of days to retain audit log files is five (5) days.
Note that you cannot set this value lower than five. In addition, you should use an Integer to specify
the number. If you specify a decimal, such as 6.9, only the number(s) before the decimal point are
read, so that, for this example, the audit log files are retained for 6 days.
3. In the Delete After field, select the current entry and type the number of days (5 or greater than 5
and Integer only) to retain audit log files.
4. Under Categories Enabled, select or clear the check boxes for the categories for which you want to
see audit log entries. (Note that "Device Communication" is the same category as "Asset
Communication" and "Apm Administration" is the same category as "Administration".)
5. Click Save to put your changes into effect.