Security Management (FIPS Mode)
User Audit Trails
NOTE: The audit file is located in the cam directory and can only be accessed via SSH2. The craft port does not allow cat, head, or tail commands in the FIPS mode.
NOTE: Audit files can be up to 200k bytes, with the most recent data being located at the end of the file. Use the tail command to display the end of the file. For detailed examination, it is best to upload the file via FTP or SFTP.
To display the audit file, at the Broadmore > prompt, enter the following commands: cd cam ↵
tail audit.txt ↵
An example of the output is provided below.
User audit files record the following information for each user action: date
time
online CPU (Q or R) or standby CPU (q or r) user name
event type
short description of the event
Once the audit.txt file is full, the file is automatically closed, the name is changed
Broadmore 1750 - Release 4.6 |
|