deny (modify) user=anybody
Administrators, agents, and auditors can view the value of the fileName parameter; no one is
allowed to modify the fileName parameter.
16.7.46. certServer.log.content.SignedAudit
Controls read operations to the signed audit log.
16.7.46.1. Operations
Operations
read
16.7.46.2. Default ACIs
deny (read) group="Administrators"
|| group="Certificate Manager Agents"
|| group="Data Recovery Manager Agents"
|| group="Online Certificate Status Manager Agents"
Only an auditor is allowed to view the audit log.
NOTE
All other groups need to be specifically denied access to this log since they are given
access to all logs in the certServer.log.content ACL.
16.7.47. certServer.log.content
Controls read operations to all logs.
16.7.47.1. Operations
Operations
read
16.7.47.2. Default ACIs
allow (read) group="Administrators"
|| group="Auditors"
|| group="Certificate Manager Agents"
|| group="Data Recovery Manager Agents"
|| group="Online Certificate Status Manager Agents"
Administrators, agents, and auditors can read all logs.
certServer.log.content.SignedAudit
Description
View log content. List all logs.
391
Need help?
Do you have a question about the CERTIFICATE SYSTEM 7.2 - ADMINISTRATION and is the answer not in the manual?
Questions and answers