Authorization Control Summary Report and Fields (AUTHCNTL)

This report presents all authorization control events according to the combination of OMEGAMON® for DB2® PE identifiers specified.

Use the following command to generate an authorization control summary report.

 
AUDIT
     REPORT
     LEVEL (SUMMARY)
     TYPE  (AUTHCNTL)
 

Layout of a Member-Scope Audit Authorization Control Summary Report

The layout of this report varies slightly depending if it is a member or group-scope report.

   LOCATION: LOCATI_2                   OMEGAMON XE FOR DB2 PERFORMANCE EXPERT (V5R4M0)                   PAGE: 1-2
      GROUP: GROUP_1                              AUDIT REPORT - SUMMARY                        REQUESTED FROM: NOT SPECIFIED
     MEMBER: MEMBER_2                              AUTHORIZATION CONTROL                                    TO: NOT SPECIFIED
  SUBSYSTEM: SYS2                             ORDER: PRIMAUTH-PLANNAME-OBJECT                      ACTUAL FROM: 01/30/15 04:21:44.17
DB2 VERSION: V10                                       SCOPE: MEMBER                                        TO: 01/30/15 07:19:20.25

                   OBJECT
PRIMAUTH PLANNAME   TYPE         GRANTS  REVOKES   TOTAL
-------- -------- --------      -------- -------- --------
AUTH_20  PLAN_20  TSPACE               0        2        2
         PLAN_30  TSPACE               0        2        2
         *TOTAL*                       0        4        4

AUTH_30  PLAN_20  TSPACE               0        2        2
         PLAN_30  TSPACE               0        2        2
         *TOTAL*                       0        4        4

*GRAND TOTAL*                          0        8        8

For group-scope reports:

  • MEMBER and SUBSYSTEM are not shown on the page header
  • MEMBER is not added to the identifiers specified.
  • A GROUP TOTAL is shown when a member value changes.

Layout of a Group-Scope Audit Authorization Control Summary Report

Here is a sample layout of a Group-Scope Audit Authorization Control Summary report.
   LOCATION: LOCATI_2                   OMEGAMON XE FOR DB2 PERFORMANCE EXPERT (V5R4M0)                   PAGE: 1-2
      GROUP: GROUP_1                              AUDIT REPORT - SUMMARY                        REQUESTED FROM: NOT SPECIFIED
                                                   AUTHORIZATION CONTROL                                    TO: NOT SPECIFIED
                                                       ORDER: OBJECT                               ACTUAL FROM: 01/30/15 04:21:44.17
DB2 VERSION: V10                                       SCOPE: GROUP                                         TO: 01/30/15 07:21:20.25

OBJECT
 TYPE    MEMBER        GRANTS  REVOKES   TOTAL
-------- --------      -------- -------- --------
TSPACE   MEMBER_2             0        8        8
         MEMBER_3             0        8        8

*GRAND TOTAL*                 0       16       16

Field description

The authorization control summary report contains the following fields:

OMEGAMON for Db2 PE Identifiers
The identifiers define the order of the Audit data reported. Up to three identifiers are printed.
The defaults are:
  • For member-scope reports, PRIMAUTH-PLANNAME-OBJECT
  • For group-scope reports, OBJECT

For group-scope reports, MEMBER is automatically added as the last identifier.

OBJECT TYPE
The DB2 object type of the GRANT or REVOKE. Possible values are:
  • TSPACE
  • LOBTS
  • TAB/VIEW
GRANTS
All grant operations.
REVOKES
All revoke operations.
TOTAL
All grant/revoke operations. The total number of IFCID 141 records for this set of identifiers.