Using the Secure Auditing Verification Tool
  • 07 Jan 2025
  • 1 Minute à lire
  • Sombre
    Lumière
  • PDF

Using the Secure Auditing Verification Tool

  • Sombre
    Lumière
  • PDF

The content is currently unavailable in French. You are viewing the default English version.
Résumé de l’article

Secure auditing output can be verified using the Secure Auditing Verification Tool. This tool scans the secure auditing output and verifies that all the entries are in the correct order, and that nothing has been removed or added. You can optionally specify a trace file to write any secure auditing lines that fail the verification.

The Secure Auditing Verification Tool is a command-line utility that is installed with OneSpan Authentication Server.

To verify audit data with the Secure Auditing Verification Tool

  1. Open a Windows Command Prompt window.
  2. Change to the OneSpan Authentication Server binary folder.
  3. Run the following command:

    auditvt -cert certname -audit_file auditfilename -trace_file tracefilename

    where:

    • certname is the absolute path of the audit master public keypair, in PEM format.
    • auditfilename is the absolute path of the secure auditing output file that you want to verify.
    • tracefilename is a file to write any secure auditing file entries that don't pass verification. This parameter is optional.

    If you are using a Thales ProtectServer hardware security module (HSM), export the certificate file (see Secure auditing with Thales ProtectServer).

    If you are not using an HSM, you can use the auditmaster.cer certificate file. This file is located in the following folder:

    /etc/vasco/ias (Linux)

    %PROGRAMFILES%\VASCO\IDENTIKEY Authentication Server\bin (Windows)

    The Secure Auditing Verification Tool will scan the specified file and produce results similar to those shown in the example below. The overall status of the file is shown at the end of the messages. In this case the status is Passed.

    Secure Auditing Verification Tool output

    ===[ Verification Summary ]==============================

    Successfully verified epoch headers : 0

    Successfully verified epoch footers : 0

    Successfully verified audit messages: 0

    Non-secure audit messages found     : 5

    Secure audit failures               : 0

    Secure audit warnings               : 0

    Secure audit messages checked       : 5

    =========================================================

    Verification: Passed


Cet article vous a-t-il été utile ?

Changing your password will log you out immediately. Use the new password to log back in.
First name must have atleast 2 characters. Numbers and special characters are not allowed.
Last name must have atleast 1 characters. Numbers and special characters are not allowed.
Enter a valid email
Enter a valid password
Your profile has been successfully updated.
ESC

Ozzy, facilitant la découverte de connaissances grâce à l’intelligence conversationnelle