Event Details
Operating System->TPAM (draft)->User activity->Password: Approved
Password: Approved
Password was approved.

Module: Privileged Password Manager
 Sample:
Feb 15 17:42:23 10.30.44.209 PAR[2688]: UserName: tpamsm Operation: Approved ObjectType: Password Target: dimalinux/yksm Role: NoRole Failed? 0
Log Type: Generic Syslog
 Uniquely Identified By:
OS Type: Any
Filtering RegExp: ^(.{15}) ([-[:alnum:]_.]+) ([^():]+)(\([^[]+\)){0,1}(\[[0-9]+\]){0,1}: (UserName: (.*) Operation: (.*) ObjectType: (.*) Target: (.*) Role: (.*[^])[]* Failed\? (.*))
Field Matching
FieldDescriptionStored inSample Value
DateTime Date/Time of event origination in GMT format. DateTime Feb 15 17:42:23
Source Name of system type origination the event. "TPAMCONSOLE" TPAMCONSOLE
Computer Name / IP address of the host that originally generated the message. Computer 10.30.44.209
Description The entire unparsed event message. RegExpGroup7
UserName TPAM user account initiating event. - tpamsm
Operation Type of action. - Approved
ObjectType Type of the object on which action is taken. - Password
Target Name of the object on which action is taken. - dimalinux/yksm
Role Permission type - NoRole
Failed Result of execution (0 - true, 1 - false) - 0
Comments
You must be logged in to comment