38
Novell XDASv2 Administration Guide
n
ov
do
cx (e
n)
16
Ap
ril 20
10
Tolerance
The tolerance value is a value between 0 and 100, indicating the tolerance of
the clock used to record the time in offset. Values of zero indicate the clock is
very accurate. Values of 100 indicate that the clock should not be trusted.
Certainty
The certainty value is a value between 0 and 100, indicating the percentage
certainty of the tolerance value. Zero means there is no certainty of the
tolerance, and thus, it shouldn't be trusted to any degree of accuracy. A value
of 100 indicates that the tolerance value is very accurate.
Source
The time source is information indicating the source of time for the observer
system. This may be a URL for a time server, or simply a local time source,
such as a hardware clock.
Zone
The time zone is the new time zone string representing the time zone of this
clock.
Target (Optional)
The target of an event is the account or protected resource upon which the
initiator is attempting to act, thereby provoking the generation of an event. A
target is described in terms of an account and an entity (described below), as
well as an optional and unspecified Data object. The Data object is a set of
name/value pairs describing class-specific attributes of the actor. The schema
does not define the actual fields, as different classes will have a unique set of
data attributes (if any).
Observer
The observer of an event is the authenticated identity of an entity (service) that
is monitoring the system, and generating events based on initiator actions. An
observer is described in terms of an account and an entity (described below).
Referenced Classes
The observer, initiator, and target fields contain references to the account and
entity classes defined separately within the schema. These other classes
identify key attributes of the three primary actors within an audit event.
Account Class
The account class represents the identity of the actor. This identity is relative
to an authentication realm or Domain. Both an account name and an account
Id are provides, although only the Id is really required. The Name is for human
readability.
Account Domain
The account Domain defines the authentication authority of the actor. Account
identifiers mean very little without an authentication authority.
Account Name
The account Name is optional, providing human readability.
Account Id
The account Id is a unique identifier of the account within the authentication
Domain.
Entity Class
The entity class describes the location of the actor. This location is defined in
terms of a system access end point (IP network) address and a system
access end point (host/domain) name. Additional fields are also available to
describe the service and component names within the software that manages
the above end points.
Entity SysAddr
An IP address describing the access end point of the software actor.
Entity SysName
A host/domain name describing the access end point of the software actor.
Entity SvcName
A service name further describing the service that manages the above end
point.
Entity SvcComp
A service component name describing the component within the above
service.
XDAS Field
Description
Summary of Contents for XDASV2 - ADMINISTRATION GUIDE V1
Page 4: ...4 Novell XDASv2 Administration Guide novdocx en 16 April 2010...
Page 6: ...6 Novell XDASv2 Administration Guide novdocx en 16 April 2010...
Page 8: ...8 Novell XDASv2 Administration Guide novdocx en 16 April 2010...
Page 32: ...32 Novell XDASv2 Administration Guide novdocx en 16 April 2010...
Page 40: ...40 Novell XDASv2 Administration Guide novdocx en 16 April 2010...