HDLM and other Hitachi storage-related products provide an audit log function so that compliance with regulations, security evaluation standards, and industry-specific standards can be shown to auditors and evaluators. The following table describes the categories of audit log data that Hitachi storage-related products can collect.
Category |
Explanation |
|---|---|
StartStop |
An event indicating the startup or termination of hardware or software, including:
|
Failure |
An abnormal hardware or software event, including:
|
LinkStatus |
An event indicating the linkage status between devices:
|
ExternalService |
An event indicating the result of communication between a Hitachi storage-related product and an external service, including:
|
Authentication |
An event indicating that a connection or authentication attempt made by a device, administrator, or end-user has succeeded or failed, including:
|
AccessControl |
An event indicating that a resource access attempt made by a device, administrator, or end-user has succeeded or failed, including:
|
ContentAccess |
An event indicating that an attempt to access critical data has succeeded or failed, including:
|
ConfigurationAccess |
An event indicating that a permitted operation performed by the administrator has terminated normally or failed, including:
|
Maintenance |
An event indicating that a maintenance operation has terminated normally or failed, including:
|
AnomalyEvent |
An event indicating an abnormal state such as exceeding a threshold, including:
|
An event indicating an occurrence of abnormal communication, including:
|
The categories of audit log data that can be collected differ depending on the product. The following sections explain only the categories of audit log data that can be collected by HDLM. For the categories of audit log data that can be collected by a product other than HDLM, see the corresponding product manual.