The communication paths that Novell® Audit uses to log system events and provide event notification are enabled by channel drivers. Channel drivers are configured and managed through Channel objects, which store the information the logging server needs to use a certain channel.
Novell Audit is designed so you can create multiple Channel objects for any given channel. This means you can create different channel configurations for different functions or events. For instance, you can configure the Logging Server to use one MySQL* Channel object to add events to the central data store and configure a Notification Filter to use another MySQL Channel object to create a filtered log.
Channel containers provide a reference point through which the logging server can locate Channel objects. At startup, the logging server scans its list of supported Channel containers and loads the included Channel object configurations in memory where they can be used to provide event notification and log events. The logging server only looks for Channel objects in Channel containers; therefore, Channel objects can only be created within Channel containers.
The Channel container located under Logging Services is automatically created during installation; however, depending on your overall system design, Channel containers can be created anywhere in the tree.
IMPORTANT: The logging server only loads the channel drivers that have Channel objects in supported Channel containers. Therefore, if you create a new Channel container or Channel object, you must ensure the Channel container is included in the logging server's Channel Container list.
The NetWareŽ 6.5 product license authorizes you to use the Novell Audit SMTP, File, and MySQL channels. You must acquire a license for every other channel. If the additional channels are configured without a license, the Secure Logging Server does not load.
By default, Novell Audit supports the following channels:
Additional channels can be easily incorporated in this model. For more information, see the Novell Audit SDK.
The directory in which the channel drivers (lgd*) are located is defined on the Logging Server object; however, the default channel driver directories are as follows:
Operating System |
Directory |
Netware |
sys:\system\ |
Windows* |
\program files\novell\nsure audit\ |
Linux* |
/opt/novell/naudit/ |
Solaris* |
/opt/NOVLnaudit/ |
IMPORTANT: The logging server loads the Channel object configurations from its supported Channel containers at startup. Therefore, if you create a Channel object, you must restart the logging server for the changes to take effect. For information on restarting the logging server, refer to the Novell Audit Administration Guide.
To create a new Channel object:
On the Logging Server Options page, click the Channels tab.
Select the box next to the Channel container in which you want to create the Channel object.
If the container is not listed, you can add the Channel container.
Click Channel Actions, then select New.
The New Channel menu opens.
Type a name for the object in the Channel Name field.
IMPORTANT: Do not use apostrophes, spaces, or other special characters in Channel object names.
Select the channel type from the drop-down list.
Click OK to create the Channel object.
The Modify Object menu for the channel opens.
Configure the Channel object attributes.
|
When finished, click OK.
IMPORTANT: The logging server loads the Channel object configurations from its supported Channel containers at startup. Therefore, if you modify a Channel object, you must restart the logging server for the changes to take effect. For information on restarting the logging server, refer to the Novell Audit Administration Guide.
To configure a Channel object:
On the Logging Server Options page, click the Channels tab.
Click the Channel object you want to configure.
If the Channel object isn't visible, click the plus icon
next to the object's Channel container to expand the object
list.
The Modify Object menu for the channel opens.
Modify the Channel object attributes.
|
When finished, click OK.
A trademark symbol (®, , etc.) denotes a Novell trademark. An asterisk (*) denotes a third-party trademark. For information on trademarks, see Legal Notices.