-
Feature
-
Resolution: Done
-
Major
-
jboss-fuse-6.2
-
0
-
0%
-
-
Todo
-
7.0 Sprint 16, Fuse 7.0 Sprint 21
Now that Fuse (6.2) has role-based access control, it is desirable to capture administrative actions in an audit log.
The following administrative access points should be captured:
- Hawtio web console
- Karaf command-line console (local and remote)
- JMX operations (local and remote)
The log should capture the username of the administrator where there is one (i.e., on remote operations), the time of the action, and the remote IP address (where applicable).
Of special concern to some customers is a recording of failed authentication attempts.
- blocks
-
CLOUD-1620 Implement optional java console per user action audit logging for A-MQ and FIS xPaaS images
- New
- is related to
-
ENTESB-6226 JAAS FileAuditLoginModule does not log explicit logouts
- Closed
- relates to
-
ENTESB-8813 Integrate existing RBAC with OpenShift RBAC available in 3.7+
- Closed