Safeguard Audit Service Manual (G06.29+, H06.08+, J06.03+)

Specifying Auditing
Safeguard Audit Service Manual 520480-031
2 - 28
The ALTER SAFEGUARD Command
The ALTER SAFEGUARD Command
To configure systemwide auditing, use the ALTER SAFEGUARD command to specify
Safeguard configuration attributes. The ALTER SAFEGUARD command is restricted to
either the super group or to the SECURITY-ADMINISTRATOR security group if it has
been created.
The INFO SAFEGUARD Command
You can check the values of the Safeguard configuration attributes with the INFO
SAFEGUARD command. A special AUDIT qualifier of the INFO command allows you to
display only the audit configuration attributes. The following example shows the INFO
SAFEGUARD command with the AUDIT qualifier and the resulting display:
=INFO SAFEGUARD, AUDIT
AUDIT-OBJECT-ACCESS-PASS = NONE AUDIT-AUTHENTICATE-PASS = NONE
AUDIT-OBJECT-ACCESS-FAIL = NONE AUDIT-AUTHENTICATE-FAIL = NONE
AUDIT-OBJECT-MANAGE-PASS = NONE AUDIT-SUBJECT-MANAGE-PASS = NONE
AUDIT-OBJECT-MANAGE-FAIL = NONE AUDIT-SUBJECT-MANAGE-FAIL = NONE
AUDIT-DEVICE-ACCESS-PASS = NONE AUDIT-PROCESS-ACCESS-PASS = NONE
AUDIT-DEVICE-ACCESS-FAIL = NONE AUDIT-PROCESS-ACCESS-FAIL = NONE
AUDIT-DEVICE-MANAGE-PASS = NONE AUDIT-PROCESS-MANAGE-PASS = NONE
AUDIT-DEVICE-MANAGE-FAIL = NONE AUDIT-PROCESS-MANAGE-FAIL = NONE
AUDIT-DISKFILE-ACCESS-PASS = NONE
AUDIT-DISKFILE-ACCESS-FAIL = NONE
AUDIT-DISKFILE-MANAGE-PASS = NONE
AUDIT-DISKFILE-MANAGE-FAIL = NONE
AUDIT-DISKFILE-PRIV-LOGON = OFF
AUDIT-CLIENT-GUARDIAN = ON
AUDIT-CLIENT-OSS = ON
AUDIT-OSS-FILTER = OFF
AUDIT-TACL-LOGOFF = OFF
AUDIT-EXCLUDE-FIELD = NONE
AUDIT-EXCLUDE-VALUE = NONE
DYNAMIC-PROC-UPDATE = OFF