Filter Activity Monitor Events Based on Administrator Scope of Authorization
You can filter Authentication Activity Monitor events based on administrator scope of authorization. Administrators with restricted scope permissions, such as Help Desk Administrators, are able to view only those events that are within the scoped security domain of the administrator.
Procedure
Log on to the appliance using an SSH client.
Change directories:
cd /opt/rsa/am/utils
Run one of the following commands:
To restrict logging to the scoped security domain of the Security Console administrator, type the following, and then press ENTER:
./rsautil store -a add_config auth_manager.activity_monitor.scope_security_domain true GLOBAL 500
To undo the change, type the following, and then press ENTER:
./rsautil store -a update_config auth_manager.activity_monitor.scope_security_domain false GLOBAL 500
When prompted, enter your Operations Console administrator User ID, and press ENTER.
When prompted, enter your Operations Console administrator password, and press ENTER.
Restart all AM services on the primary instance and each replica instance:
cd /opt/rsa/am/server
./rsaserv restart all
Related Articles
View A Completed Report 9Number of Views View Messages in the Activity Monitor 29Number of Views Authentication using acetest fails TRANSACTION_ROLLBACK on real time authentication activity monitor for RSA Authenticatio… 65Number of Views Real Time Rules not seen in Admin UI and-or Mitigator is not running in RSA Web Threat Detection 10Number of Views Real-Time Monitoring Using Activity Monitors 88Number of Views
Trending Articles
Download RSA SecurID Access Cloud User Event audit logs using Cloud Administration REST API CLU RSA MFA Agent 2.5 for Microsoft Windows Installation and Administration Guide Quick Setup Guide - Passwordless Authentication in Windows MFA Agent for Active Directory Authentication Manager Security Console and Operations Console Inaccessible After Certificate Update Authentication Manager How to Retrieve the LDAPS Certificate and Configure an External Identity Source to Use LDAPS