Authorization Control Summary Report and Fields (AUTHCNTL)
This report presents all authorization control events according to the combination of OMEGAMON® for DB2® PE identifiers specified.
Use the following command to generate an authorization control summary report.
AUDIT
REPORT
LEVEL (SUMMARY)
TYPE (AUTHCNTL)
Layout of a Member-Scope Audit Authorization Control Summary Report
The layout of this report varies slightly depending if it is a member or group-scope report.
LOCATION: LOCATI_2 OMEGAMON XE FOR DB2 PERFORMANCE EXPERT (V5R4M0) PAGE: 1-2
GROUP: GROUP_1 AUDIT REPORT - SUMMARY REQUESTED FROM: NOT SPECIFIED
MEMBER: MEMBER_2 AUTHORIZATION CONTROL TO: NOT SPECIFIED
SUBSYSTEM: SYS2 ORDER: PRIMAUTH-PLANNAME-OBJECT ACTUAL FROM: 01/30/15 04:21:44.17
DB2 VERSION: V10 SCOPE: MEMBER TO: 01/30/15 07:19:20.25
OBJECT
PRIMAUTH PLANNAME TYPE GRANTS REVOKES TOTAL
-------- -------- -------- -------- -------- --------
AUTH_20 PLAN_20 TSPACE 0 2 2
PLAN_30 TSPACE 0 2 2
*TOTAL* 0 4 4
AUTH_30 PLAN_20 TSPACE 0 2 2
PLAN_30 TSPACE 0 2 2
*TOTAL* 0 4 4
*GRAND TOTAL* 0 8 8
For group-scope reports:
- MEMBER and SUBSYSTEM are not shown on the page header
- MEMBER is not added to the identifiers specified.
- A GROUP TOTAL is shown when a member value changes.
Layout of a Group-Scope Audit Authorization Control Summary Report
Here is a sample layout of a Group-Scope Audit Authorization Control Summary report. LOCATION: LOCATI_2 OMEGAMON XE FOR DB2 PERFORMANCE EXPERT (V5R4M0) PAGE: 1-2
GROUP: GROUP_1 AUDIT REPORT - SUMMARY REQUESTED FROM: NOT SPECIFIED
AUTHORIZATION CONTROL TO: NOT SPECIFIED
ORDER: OBJECT ACTUAL FROM: 01/30/15 04:21:44.17
DB2 VERSION: V10 SCOPE: GROUP TO: 01/30/15 07:21:20.25
OBJECT
TYPE MEMBER GRANTS REVOKES TOTAL
-------- -------- -------- -------- --------
TSPACE MEMBER_2 0 8 8
MEMBER_3 0 8 8
*GRAND TOTAL* 0 16 16
Field description
The authorization control summary report contains the following fields:
- OMEGAMON for Db2 PE Identifiers
- The identifiers define the order of the Audit data reported.
Up to three identifiers are printed. The defaults are:
- For member-scope reports, PRIMAUTH-PLANNAME-OBJECT
- For group-scope reports, OBJECT
For group-scope reports, MEMBER is automatically added as the last identifier.
- OBJECT TYPE
- The DB2 object type of the GRANT or REVOKE. Possible
values are:
- TSPACE
- LOBTS
- TAB/VIEW
- GRANTS
- All grant operations.
- REVOKES
- All revoke operations.
- TOTAL
- All grant/revoke operations. The total number of IFCID 141 records for this set of identifiers.