Re: [Freeipa-users] who did what on IPAv3 - auditing

2016-07-26 Thread Ernedin Zajko
Hi Stefan, have you seen this: https://access.redhat.com/solutions/772563 regards, --- Ernedin ZAJKO eza...@root.ba > 340282366920938463463374607431768211456 On Tue, Jul 26, 2016 at 12:45 PM, Stefan Uygur wrote: > This is the case I am after just to be more

Re: [Freeipa-users] who did what on IPAv3 - auditing

2016-07-26 Thread Prashant Bapat
What we have done this as follows. 1. For all the changes, happening thru IPA APIs (either cmd line of WebUI) you can capture these in the httpd error logs. We trigger alert emails on important events such as new user addition etc. 2. For everything including the above, you can always enable the

Re: [Freeipa-users] who did what on IPAv3 - auditing

2016-07-26 Thread Stefan Uygur
This is the case I am after just to be more precise: https://access.redhat.com/solutions/441893 It was requested 3yrs ago but no follow up so far. From: Stefan Uygur Sent: 26 July 2016 11:18 To: freeipa-users@redhat.com Subject: who did what on IPAv3 - auditing Hi all, Still around the auditing

[Freeipa-users] who did what on IPAv3 - auditing

2016-07-26 Thread Stefan Uygur
Hi all, Still around the auditing problem with IPA, it seems the part related to auditing is completely missing in IPA and that is not really good. For instance, to find out who did what, who added or modified the permissions or users or sudo rules, etc, all this need auditing and it needs to