ROLE_ASSUME Audit Event - dogtagpki/pki GitHub Wiki

Overview

The ROLE_ASSUME audit event is generate when user assumes a role (in current CS that’s when one accesses a role port).

Properties:

  • Role must be be one of the valid roles, by default: Administrators, Certificate Manager Agents, and Auditors. Note that customized role names can be used once configured.

Examples

Start PKI Console and login as admin user. The server will generate the following logs:

[AuditEvent=ROLE_ASSUME][SubjectID=caadmin][Outcome=Success][Role=Certificate Ma
nager Agents, Administrators, Security Domain Administrators, Enterprise CA Admi
nistrators, Enterprise KRA Administrators, Enterprise OCSP Administrators, Enter
prise TKS Administrators, Enterprise RA Administrators, Enterprise TPS Administr
ators] assume privileged role
⚠️ **GitHub.com Fallback** ⚠️