Previous Topic: Security ReportsNext Topic: Auditing Users and Resources


Auditing

The TSSAUDIT utility lets auditors monitor changes to the Security File, sensitive facilities, and data areas.

CA Top Secret does not distinguish between an auditor and a CA Top Secret administrator. The auditor controls the functional responsibilities assigned to an employee. The types of CA Top Secret administrative authorities associated with the ACID reflect these functional responsibilities. The TSS ADMIN command function assigns administrative authorities, including audit-type authorities.

The ACIDs and resources must be included within the auditor's scope of authority, which is determined by the ACID type assigned when the auditor was defined to CA Top Secret. The scope can range from the entire installation (SCA) to just a user (USER).

Example: auditing ACID

This example gives an ACID the authority to audit certain resources and ACIDs and to use TSSUTIL, TSSAUDIT, and TSSTRACK to track both types of information:

TSS ADMIN(auditor's acid) RESOURCE(AUDIT,REPORT)
                          ACID(AUDIT,REPORT)