How does Security Manager insure that repository data cannot be altered? (NETIQKB71665)

  • 7771665
  • 04-Aug-2009
  • 04-Aug-2009

Environment

Security Manager 5.x

Security Manager 6.x

Situation

How does Security Manager insure that repository data cannot be altered?

Resolution

Data gathered by Security Manager is written into a binary flat file repository that only supports write and read operations.  Due to the Log Archive Technology not supporting updates or deletes, there is no way to modify data once it is written into the repository.  Data is hashed when it is stored in this repository and can optionally be digitally signed using x.509 compliant certificates.

 

Additional Information

Formerly known as NETIQKB71665