ROLE_ASSUME Audit Event - dogtagpki/pki GitHub Wiki
The ROLE_ASSUME
audit event is generate when user assumes a role (in current CS that’s when one accesses a role port).
Properties:
-
Role
must be be one of the valid roles, by default:Administrators
,Certificate Manager Agents
, andAuditors
. Note that customized role names can be used once configured.
Start PKI Console and login as admin user. The server will generate the following logs:
[AuditEvent=ROLE_ASSUME][SubjectID=caadmin][Outcome=Success][Role=Certificate Ma nager Agents, Administrators, Security Domain Administrators, Enterprise CA Admi nistrators, Enterprise KRA Administrators, Enterprise OCSP Administrators, Enter prise TKS Administrators, Enterprise RA Administrators, Enterprise TPS Administr ators] assume privileged role