Trusted Path

The trusted path configuration parameter (audittrail.Centrify_Suite.Trusted_Path.machinecred.skipda) specifies whether trusted path audit trail events are sent to the audit installation database in situations where the user is using a computer credential. The audit events identify a granted and denied Trusted Path.

Trusted Path Audit Event Log Sample

The following is a sample of an audit event log for Centrify Audit Event ID 23700. This log sample documents a Trusted Path being granted. The change was made by user=newcentos$@acme.vms on April 04 at 21:02:09.

Apr 4 21:02:09 newcentos adclient[1395]: INFO AUDIT  
_TRAIL|Centrify Suite|Trusted Path|1.0|2700|Trusted path   
granted|5|user=newcentos$@acme.vms pid=1395   
utc=1459783929161 CentrifyEventID=23700 DAInst=AuditingInstallation   
DASessID=c72252aa-e616-44ff-a5f6-d3f53f09bb67   
status=GRANTED server=ldap/dc.acme.vms@acme.vms
The Trusted path audit event log sample identifies a server field type instead of the usual service field type found in UNIX/Linux audit events.

Trusted Path Audit Events

Trusted Path Audit Events

Event Id Description Parameters
23700 Trusted path granted server: server
23701 Trusted path denied server: server reason: error message