User authentication logs
LPAR manager records logs of connections made by users. A maximum of
9,000 logs are kept.
Note:
•
User authentication log is cleared when LPAR manager restarts or shuts
down. Collect the necessary authentication log data before shutting down
LPAR manager.
To collect a user authentication log, perform the following operations:
Table 3-32 Web console
Item
Operation
Show authentication log
Resources tab > Modules > All Modules > Server Blades >
Server Blades x > LPAR manager tab > Edit button >
Show authentication log
Table 3-33 HVM management command (HvmSh)
Item
Command name
Collecting user authentication
log
get HvmAuthenticationLogs
Audit log
The audit log is a history of operations, which is collected to detect and
investigate illegal activities and can be used to prove that no illegal activities
have been performed. The audit log is transferred to an external Syslog
server.
Scope of support
The scope of support for the auditing log is as follows.
Table 3-34 Scope of support
Item
Scope of support
Syslog server type
Syslog servers that support the RFC5424 format
Number of syslog servers
Maximum of two syslog servers (The same auditing
log will be sent to all registered syslog servers.)
Communication protocol
•
UDP
•
TLS v1.0-v1.2
Collection target
Select Authentication or Authentication and
modification.
3-28
High Reliability Functions
Hitachi Compute Blade 500 Series Logical partitioning manager User's Guide