
certServer.log.content.SignedAudit
391
deny (modify) user=anybody
Administrators, agents, and auditors can view the value of the
fileName
parameter; no one is
allowed to modify the
fileName
parameter.
16.7.46. certServer.log.content.SignedAudit
Controls read operations to the signed audit log.
16.7.46.1. Operations
Operations
Description
read
View log content. List logs.
16.7.46.2. Default ACIs
deny (read) group="Administrators"
|| group="Certificate Manager Agents"
|| group="Data Recovery Manager Agents"
|| group="Online Certificate Status Manager Agents"
Only an auditor is allowed to view the audit log.
NOTE
All other groups need to be specifically denied access to this log since they are given
access to all logs in the
certServer.log.content
ACL.
16.7.47. certServer.log.content
Controls read operations to all logs.
16.7.47.1. Operations
Operations
Description
read
View log content. List all logs.
16.7.47.2. Default ACIs
allow (read) group="Administrators"
|| group="Auditors"
|| group="Certificate Manager Agents"
|| group="Data Recovery Manager Agents"
|| group="Online Certificate Status Manager Agents"
Administrators, agents, and auditors can read all logs.
Содержание CERTIFICATE SYSTEM 7.2 - MIGRATION GUIDE
Страница 36: ...Chapter 1 Overview 16 Figure 1 4 Certificate System Architecture ...
Страница 144: ...124 ...
Страница 160: ...140 ...
Страница 208: ...188 ...
Страница 210: ...190 ...
Страница 256: ...236 ...
Страница 282: ...Chapter 12 Certificate Profiles 262 Parameter IssuerName_n IssuerType_n ...
Страница 285: ...Freshest CRL Extension Default 265 Parameter PointName_n PointIssuerName_n ...
Страница 335: ...Configuring Mappers 315 Figure 14 9 Selecting a New Mapper Type 6 Edit the mapper instance and click OK ...
Страница 362: ...342 ...
Страница 376: ...356 ...
Страница 436: ...416 ...
Страница 490: ...470 ...
Страница 504: ...484 ...