How to configure which events the Logging Server records
Originally Published: 2002-07-08
Last Modified: 2023-10-06
Article Number
Applies To
Issue
Configure events to log
Audit administrators' actions
Log administrators? activities
Log end-entities' activities
Resolution
1. On the KCA Administration Console, click the System Configuration Workbench button
2. In the Navigation Area, click Logging Configuration
3. Select the ?Log on Success? and/or the ?Log on Failure? checkbox for each event that you want to log. Available events include:
- Key generation
- Sign an end-entity certificate
- Sign a CA certificate
- Download an end-entity certificate to a client
- Download a CA certificate to a client
- Download a CRL or OCSP signer certificate to a client
- Issue a CRL
- Import a CRL
- Re-sign a certificate
- Create a new CA
- Import a CA certificate from PKCS #12
- Create a new Administrator
- Create a new Vettor
- Update a CA certificate
- OCSP transactions, e.g. requestor details, time of OCSP request, and response status
- Create a CRL or OCSP signer certificate
- Sign a CRL or OCSP signer certificate
- Reinstate a CA certificate
- Suspend a CA certificate
- Revoke a CA certificate
- Reinstate an end-entity certificate
- Suspend an end-entity certificate
- Revoke a certificate
- Revoke a CRL or OCSP signer certificate
- Sign a reverse cross-certificate
- Import a forward cross-certificate
- Revoke a reverse cross-certificate
- Suspend a reverse cross-certificate
- Reinstate a reverse cross-certificate
- Delete a forward cross-certificate
- Download a reverse cross-certificate
Note that the operations a) delete certificate requests and b) delete certificate cannot be logged.
4. Click Save Current Logging Configuration
In the logs, the field "certificate presented:" identifies the Certificate ID (MD5) of the end-entity/administrator that executed the event logged, for example, the Certificate ID of the administrator that signed an end-entity certificate.
Related Articles
Monitoring scripts delayed when sent to remote syslog 27Number of Views syslog over TCP 223Number of Views Forward syslog messages in RSA Authentication Manager 8.0 through 8.3 240Number of Views Errors when configuring RSA Access Manager to send logs to RSA enVision or a generic syslog server 32Number of Views Installer prerequisite fails on files that are not relevant to the RSA Governance & Lifecycle deployment 148Number of Views
Trending Articles
How to manipulate imported RSA SecurID Software Token(s) on an iPhone or iPad device Reporting on RSA Authentication Manager 8.x users with On-Demand Token, a fixed passcode or a hardware/software token assi… How to Download OTP Token Seed Files from myRSA Anomalix idGenius - SAML Relying Party Configuration - RSA Ready Implementation Guide RSA MFA Agent 2.5 for Microsoft Windows Installation and Administration Guide
Don't see what you're looking for?