HP XP7 Audit Log User and Reference Guide (H6F56-96001)

Table Of Contents
Table 10 Function Name and Event Name Output to Auditlog information file 2
Output TriggerEvent NameFunction Name
Change CEK StatusENC
When the encryption environment setting is configured from the initial
setting.
When the certificate encryption key is updated.
When the encryption disk adapter is deleted or replaced.
Change DEK Status
When the encryption environment setting is configured from the initial
setting.
When the encryption environment setting is initialized.
When the data encryption is enabled/disabled.
When Dynamic sparing, Correction copy or Copy back is performed.
When the drive (Hard disk drive, SSD or FMD) is added, deleted or
replaced after the encryption environmental setting is configured.
When the encryption environment setting is initialized.Clear Keys
When the encryption key is created.Create Keys
When the encryption key is deleted.Delete Keys
Use Keys for CEK/KEK
When the encryption environment setting is configured from the initial
setting.
When the certificate encryption key is updated.
When the encryption disk adapter is added or replaced.
Command sent from the host
The following table describes the function name output to the audit log file when receiving commands
from the host.
Table 11 Audit Log and Command Sent from Host
DescriptionFunction Name
Indicates that a configuration command was received.Config Command
Indicates that the FC-SP authentication is completed.FC-SP
Indicates that a user authentication command was received.User Auth
Audit log reproduced output
The following table describes the operation name, event name, and triggering events that are
output when the audit log file is reproduced. The "create file" event name will be automatically
output only once.
Table 12 Audit Log File Output
Output TriggerEvent NameFunction Name
Output when abnormal files in the audit log are reproduced
automatically.
Create FileAuditLog
Audit log lost output
The following shows the function name and the event name that are output when the audit log by
the commands that the storage system accepted from the host has been lost. The "DKCAuditLog
was lost" event name will be automatically output only once for each output trigger.
42 Quick reference