The tool supports interface of Foresight Analytics Platform 9 or earlier.
The access protocol can display types of logged operations for different types of objects. Access protocol also shows the completed Comment box for some of the operations.
Setup of logged operations is executed on selecting audit and history operations for each object type.
Create, read, edit, change and delete permission operations can be logged for all object classes.
The operations available only for specific objects are set up by means of specific operations.
Operation | Object class | Contents of the Comment box |
Login and logoff | The operation is regarded as administrative. | DBMS error message text is displayed in case of unsuccessful system login. |
Connect to/Disconnect from version control system | The operation is regarded as administrative. | |
Change version control system settings | The operation is regarded as administrative. | |
Password for service user of the <service user name> security subsystem has changed | The operation is regarded as administrative. | |
Read | All | |
Change | All | |
Change permissions | All | Information on previous and assigned permissions is specified (before/now). Information about changing of state for the Inherit Permissions from Parent Object checkbox. |
Delete | All | |
Read descriptor | All | |
Change descriptor | All | |
Read parameters | All | |
Change parameters | All | |
Read metadata | All | |
Change metadata | All | |
Types of objects, for which the printing operation is available. NOTE. On printing a regular report or express report from the web application two operations are logged: export to PDF and printing. |
The device name, port, number of copies, number of pages, print output can be specified. If the mode of matching the user with an output device is enabled, specify information on added and deleted printers, clearing the list of available printers, changing the printer access level and adding a printer to the specified subject. The system comment can be added with a user comment. |
|
Export | Types of objects, for which the export operation is available. NOTE. On printing a regular report or express report from the web application two operations are logged: export to PDF and printing. |
The following data may be specified: export of users' list, export of settings for security policy and auditing, permissions export, path and name of the exported file, export format, number of copies, and result. If the operation logging with clipboard mode is enabled, the text about saving information from object is recorded. The system comment can be added with a user comment. |
Import | Types of objects, for which the import operation is available. | |
Creating | All | |
Read update | Update | Path to the file that was used to open the update. |
Write update | Update | Path to the file that was used to save the update. |
Apply update | Update | Path to the file that was used to update. |
Open connection | Database | |
Retrieve data | Table, View, Log, External table, Standard cube, Calculated cube, Cube view, Virtual cube, ADOMD cube, Auto cube, Cube loader, Time series database, Indicator | |
Insert data | Table, View, Log, External table. | |
Edit data | Table, View, Log, External table. | |
Delete data | Table, View, Log, External table. | |
Transfer permissions for data | Table, View, Log, External table. | |
Modify table structure | Table, View, Log, External table. | |
Save data | Standard cube, Calculated cube, Cube view, Virtual cube, ADOMD cube, Auto cube, Cube loader, Time series database, Indicator. | |
Read formulas | Calculated cube | |
Save formulas | Calculated cube | |
Execution | Procedure, Cube loader, Multidimensional calculation on DB server, Modeling problem, Validation group, Validation rule, Calculate modeling problem, Execute ETL task, Execute unit, Calculate a report, Calculate cube. | |
Alter text | Procedure | |
Transfer permissions | Procedure | |
Reading dictionary elements | Table MDM dictionary, composite MDM dictionary. | |
Edit dictionary elements | Table MDM dictionary, composite MDM dictionary. | |
Add elements to dictionary | Table MDM dictionary, composite MDM dictionary. | |
Delete elements from dictionary | Table MDM dictionary, composite MDM dictionary. | |
Change element access permissions | Table MDM dictionary, composite MDM dictionary. | Indicates, permission for which elements and for which users are changed. |
Read policy | Security Policy | |
Edit policy | Security policy | Adding, deleting, changing groups (adding users to a group). Adding, deleting, changing users (changing name, password, and so on). Granting or revoking (canceling) privileges. Changing mandatory policy: adding, deleting or changing access categories, adding, deleting or changing access category levels. Changing policies in the policies editor: enabling or disabling ISA, enabling or disabling discretionary or mandatory access control; changing password policy, auto start object. Changing object auditing. When the mode of matching user to a device is disabled, the following data is displayed: information on adding or deleing available printers, clearing the printers list, changing access level for the printer, and adding a subject for the printer. |
Save security policy circuit | Security policy | Path to the file, to which the policy should be saved. |
Apply security policy circuit | Security Policy | Path to the file, from which the policy should be applied. |
Save | Access protocol | Path to the file, to which the protocol should be saved. |
Export to web | Regular report Operation is logged when the report is opened in the web application. |
Export format, number of copies, number of pages, and the result are to be specified. The system comment can be added with a user comment. |
See also:
Access Protocol | Event Information | Setting Up User Action Auditing