IBM Support

Rule does not trigger if the Command field of a Guardium policy rule is misconfigured

Troubleshooting


Problem

Administrators should be very careful using the Command field when configuring Infosphere Guardium policy rules. The command field value should match the value of "SQL verb" in the Command entity plus a wildcard if necessary. Administrators can build a report showing the SQL Verb for the traffic they expect to monitor with the policy.

Symptom

Rules with a value in the policy Command field do not trigger as expected.

[{"Product":{"code":"SSMPHH","label":"IBM Security Guardium"},"Business Unit":{"code":"BU048","label":"IBM Software"},"Component":"Guardium Central Manager and Aggregator","Platform":[{"code":"PF016","label":"Linux"}],"Version":"9.0;8.2;8.0","Edition":"All Editions","Line of Business":{"code":"LOB76","label":"Data Platform"}}]

Log InLog in to view more of this document

This document has the abstract of a technical article that is available to authorized users once you have logged on. Please use Log in button above to access the full document. After log in, if you do not have the right authorization for this document, there will be instructions on what to do next.

Document Information

Modified date:
16 June 2018

UID

swg21641798