Abnormal Use of Service Accounts Report (AUS)

SOX Report Specifics

Abnormal Use of Service Accounts Report (AUS)

AUS Report Sample

COBIT Objectives and Setup Requirements

Objective

 

FortiDB MA Module

Number(s)

Objective Description

Setup Requirement

 

 

 

DS5.3

Database transactions from unauthorized sources

PM: using the Audit data

 

are tracked and reviewed by IT Management on a

retrieval method

 

weekly basis.

MM: using the Audit data

 

 

 

 

retrieval method

 

 

UBM: Object or User

 

 

policies

 

 

 

Report Body Columns

The following columns are displayed in the report body:

Column

Description

 

 

User ID

The ID of the database user that conducted the flagged activity.

 

 

Terminal Name

The terminal IP address or name.

 

 

Origin Application

The name, or other identifier, for the originating application, if the activity

 

originated from an external application or from an application server.

 

 

# of Actions

The number of actions attempted by the account associated with the User ID.

 

 

Time Stamp

The exact time the flagged activity was conducted.

 

 

 

Note: If you are using an Oracle internal database and use the Limit Rows

 

checkbox in the report's Settings dialog in order to limit the number of report

 

rows, the limit that you specify applies to the number of actions and not to the the

 

number of rows.

 

FortiDB Version 3.2 Utilities User Guide

46

15-32000-81369-20081219

Page 48
Image 48
Fortinet FortiDB manual Abnormal Use of Service Accounts Report AUS, AUS Report Sample