6.8 Auditing NMAS Events

There are two products you can use to audit NMAS events:

With either product, you also need to enable NMAS Audit by using the NMAS 3.1.3 or later plug-in for iManager.

  1. Install the NMAS 3.1.3 or later plug-in into iManager.

    You can download the NMAS 3.1.3 or later plug-in from the Novell Download site

  2. In iManager, on the Roles and Tasks menu, click Directory Administration > Modify Object.

  3. Browse for and select the Login Policy object, then click OK.

  4. Click the NMAS tab, then click Settings.

  5. Click the box next to Enable auditing, then click OK.

6.8.1 Using External Certificates with Novell Audit

To use an external certificate with NMAS and Novell Audit, you must first convert the certificate into two .pem files with the following names:

  • nmascert.pem: This is the file containing the certificate.

  • nmaskey.pem: This is the file containing the private key.

These files need to be copied to the following directories on each platform for each NMAS server in the system:

  • NetWare: sys:system directory

  • Linux/UNIX: /etc

  • Windows: the return from GetWindowsDirectory (typically c:\windows)

NMAS provides the nmascert.pem and the nmaskey.pem files to the Novell Audit platform agent when the log is open, if they exist. If the files don’t exist, NMAS provides the internal certificate and key to the Novell Audit platform agent.