Browse Prior Art Database

Enablement of User Defined DCE Audit Records

IP.com Disclosure Number: IPCOM000013479D
Original Publication Date: 1999-Dec-01
Included in the Prior Art Database: 2003-Jun-18

Publishing Venue

IBM

Related People

Authors:
Woodrow Arkeketa Rick Cohen Umesh Khatwani

Abstract

Distributed Computing Environment (DCE) has three services that are capable of providing audit records: DCE Security Service, DCE Distributed Time Service, and DCE Audit Service. Users can include audit code points in their own application servers to audit the requests made by their clients. When the DCE Event Adapter is shipped it does not know about these kinds of audit records. This disclosure addresses how user-defined audit records can be included so that an existing DCE Event Adapter implementation can recognize and process them as it does the default set of DCE Audit records. To enable the DCE event adapter to send user-written audit records, one should: define the event class under which the audit records are to be converted and sent, configure the node where the event adapter resides, and configure the event server to enable it to receive these new event classes. To define other event classes, it is suggested that you look at the audit event classes that come with the DCE Event Adapter to see how they are defined. The base audit event class has the following attributes (slots): TEC_CLASS: AuditEvent ISA EVENT DEFINES source : default "DCEAudit"; aud_event_class_name : STRING; aud_event_class_number : STRING; aud_event_name : STRING; aud_event_number : STRING; aud_server : STRING;