HP Insight Control Server Provisioning 7.3 Update 1 Administrator Guide

as an enterprise directory) with the appliance, the directory service enforces password strength
and expiration.
The matrixuser account is not a local user account that can access the UI. It is used through a
different channel to drive the underlying SA Foundation from the Matrix Operating Environment.
The password is set through the UI and is never displayed. It can be re-entered as often as needed
in case the value is lost. This password is not stored in clear text and is not retrievable.
Media Server credentials are stored in a recoverable form as they must be used to connect to the
Media Server share.
Because they must be passed to the iLO, iLO credentials entered in the UI are stored in a recoverable
form.
The default passwords for OS installations can be stored in encrypted form. For more information
on the default passwords for OS build plans, see the Insight Control server provisioning UI help.
Understanding the audit log
The audit log contains a record of actions performed on the appliance, which you can use for
individual accountability.
You must have Infrastructure administrator privileges to download the audit log.
To download the audit log from the UI, select SettingsActionsDownload audit log. You must
have Infrastructure administrator privileges.
Monitor the audit logs because they are rolled over periodically to prevent them from getting too
large. Download the audit logs periodically to maintain a long-term audit history.
Each user has a unique logging ID per session, enabling you to follow a user’s trail in the audit
log. Some actions are performed by the appliance and might not have a logging ID.
A breakdown of an audit entry follows:
DescriptionToken
The date and time of the eventDate/time
The unique identifier of an internal componentInternal component
ID
The organization ID. Reserved for internal useReserved
The login domain name of the userUser domain
The user nameUser name/ID
The user session ID associated with the messageSession ID
The URI of the task resource associated with the messageTask ID
The client (browser) IP address identifies the client machine that initiated the requestClient host/IP
The result of the action, which can be one of the following values:Result
SUCCESS
FAILURE
SOME_FAILURES
CANCELED
KILLED
A description of the action, which can be one of the following values:Action
CANCELED UNSETUP LIST ADD
MODIFY LOGINDEPLOYENABLE
64 Security considerations