XYGATE User Authentication Reference Manual

XYGATE
®
User Authentication
(XUA) 1.85 Reference Manual
Appendix A: The UACONF File
XYPRO Technology Corporation 208 Proprietary and Confidential
A5: AUDIT (IP Process Name)
Any one of the nine available AUDIT keyword entries can be defined as an IP address.
This section deals with the IP address form of the AUDIT specification.
Syntax:
AUDIT <IP-process-name> IP <address[:port]> [SYSLOG_PREFIX "<134><normal text>"]
[SYSLOG_CRITICAL_PREFIX "<130><critical text>"] [CRITICAL]
Example 1: How to configure XUA to audit to an IP address
AUDIT $ZTC0 IP 208.202.151.70 Syslog_Prefix "<134> \Node1"
SYSLOG_CRITICAL_PREFIX "<130> \NODE1 XUA Logon Failure"
SYSLOG_PREFIX "<134> <normal text>"
The optional SYSLOG_PREFIX sub-keyword is used to specify text that will be
prepended to the front of the audit message being written to the IP address.
<134> The standard message tag indicating a normal message (angle
brackets are required).
<normal text> A free-form text string that you want to prepend to the front of the
message (angle brackets are not required).
Note: Both the <134> and the message string must be enclosed by double-quotation
marks.
In the Example below, XUA prefixes all the allowed operations with the text
<134> \Node1.
Example:
<134> \Node1 2013-05-01 07:29:53.276660 232080QA.TEST
080001GRP80.TST001 2.503736YSN-OVERRIDE-CONF
$NONE
$NONE $NONE.NONE.NONE $NONE
$NONE.NONE.NONE 00000301LOGON UAGROUP SN-
OVERRIDE-CONF ACCESS PASS Outcome LOGON
<134> \Node1 2013-05-01 07:29:50.811250 232080QA.TEST
080001GRP80.TST001 0.038326YSN-OVERRIDE-CONF
$NONE
$NONE $NONE.NONE.NONE $NONE
$NONE.NONE.NONE 00000204NEED-FIRST UAGROUP SN-
OVERRIDE-CONF ACCESS CONTINUE Outcome NEED-FIRST