NOTE:Novell Audit Report is included with NetWare 6.5 for evaluation purposes only. It displays a licensing notice and terminates after 10 minutes of use until you install a valid license.
Novell Audit Report is a Windows-based, ODBC-compliant application that can use SQL query statements or Crystal Decisions Reports to query Oracle and MySQL data stores (or any other database that has ODBC driver support). You can define your own SQL query statements or import existing query statements and reports. Some logging applications might also include their own predefined queries or reports. Query results are returned in simple data tables; rows represent individual records and columns represent fields within those records.
This section provides the information you need to use Novell Audit Report to generate queries and reports. It includes
Novell Audit Report is available only in the Novell Audit
Windows installation. For information on the Windows install, see Installing
on Windows
in theNovell
Audit 2.0 Installation Guide.
The Novell Audit Report program file, lreport.exe, is installed to the \program files\novell\nsure audit directory.
During installation, Novell Audit Report is added to the
menu. To start Novell Audit Report from the menu, click > > .Figure 8-3 Novell Audit Report Interface
The Workspace window includes four panes:
You must import the applications’ log schemas before they appear in the Events pane. For more information, see Importing Log Schemas.
You must define your databases before they appear in the Database pane. For more information, see Defining Your Databases in Novell Audit Report.
To move between panes, simply click the tabs at the bottom of the Workspace window. You can also open each pane from the
menu.The status bar displays the currently selected database and table. You can click these fields to select another database or table.
Novell Audit Report allows you to run queries and reports on any ODBC Data Source defined in your Windows registry.
To define your Windows Data Sources, go to the Windows Start menu and click
> > > . There you can add, remove, and configure your ODBC Data Sources. For more information, see Windows Help.After you have defined an ODBC Data Source in Windows, you can add the Data Source to your list of available databases in Novell Audit Report.
Click
> > .You can also right-click in the Database pane and select
.In the Name field, specify the name you want to use to refer to this database.
Click
.In the Select Data Source window, click
.Select the Windows Data Source Name (DSN) you want to be able to query in Novell Audit Report.
Specify the username and password Novell Audit Report can use to authenticate with the database.
If you leave this field blank, Novell Audit Report uses the username and password defined in the Data Source.
IMPORTANT:The only time you need to specify a username and password is if your Data Source driver does not define the username and password or if the username defined in the Data Source does not have rights to log in from the current workstation.
When finished, click
.The Data Source now appears in the Database pane and can be selected for queries and reports.
The following table provides further information on the options in the Define Database menu.
Table 8-7 Define Database Menu Options
To modify or delete a Data Source in Novell Audit Report:
In the Databases pane, select the Data Source you want to modify or delete.
Right-click to bring up the shortcut menu.
Modify or delete the Data Source.
Select
to modify the Data Source.Select
to delete the Data SourceNOTE:Deleting a Data Source does not affect the Data Source definition in the Windows registry. It only removes the Data Source from the Database list, which means Novell Audit Report can no longer query or run reports on the database.
Your default database is automatically used for all queries and reports unless a specific database is designated in the query statement or another database is selected in the Database pane.
To define your default database:
Click the
field on the status bar.Select the default database from the list.
You can also select the database in the Database pane, right-click, and select
or you can choose > from the menu bar.To define your default table:
Click the
field on the status bar.Type the name of the default table you want to use, or select it if it is already present in the list, then press Enter.
The default table name defined by the Oracle and MySQL channels is NAUDITLOG.
IMPORTANT:If you are using an Oracle database, the default table must correspond to the name of the table view, NAUDITLOG. For more information, see Section D.9, Creating a View in Oracle.
You can also click
> from the menu.The
menu in Novell Audit Report allows you to set your default sort order, query limits, date/time format, and Clipboard options.To bring up the
menu, click > from the menu bar.The following table reviews the options in the
menu.Table 8-8 Novell Audit Report Options Menu Options
Option |
Description |
---|---|
General |
|
|
The order in which records are sorted in the query results window. If you select ascending or descending, the records are sorted by the first column in the output which is the source IP address by default. |
Result |
|
|
The following Clipboard settings determine how query data is copied to the Clipboard. |
|
If no entries are selected when you press Ctrl+C in the Query Results window, all of the query information is copied to the Clipboard. |
|
Information is copied to the Clipboard exactly as it appears in the database. This means that all translated data (including IP addresses, signatures, dates, Severity level, Event ID, and other numeric values) are copied in their raw format. For example, a Severity level of Emergency would be copied as a 1. |
|
The field titles defined in the log schema files are copied to the Clipboard along with the data in their associated fields. IMPORTANT:This option requires that you import each logging application’s log schema. For more information, see Importing Log Schemas . |
|
When records are copied to the Clipboard, the text string provided in this field is used to delineate the fields within each record. This option facilitates cut and paste functions. For example, if you wanted to cut and paste data into an Excel spreadsheet, you would use a comma ( , ) delimiter. If you wanted to paste the data into tabular columns, you would use a tab delimiter. |
Limits |
|
|
This option limits the number of rows (that is, records) that are returned from a database query. This is a global setting. This means that Novell Audit Report automatically adds this parameter to all database queries unless the parameter is expressly defined in the query statement. |
Printing |
The following options determine which fonts are used to print query results. |
|
The font used to print the column headers. |
|
The font used to print the query data (that is, the fields within each record). |
|
The font used to print the footer in the query results page. The footer contains the page number and query string. |
Translation |
|
|
The following options determine how Novell Audit Report presents date and time information in the query results. This is a global setting. This means that Novell Audit Report automatically adds this parameter to all database queries unless the parameter is expressly defined in the query statement. |
|
All time and date information is formatted in RFC-822 format, which is the Internet standard format for electronic mail message headers. All values are expressed in UTC. |
|
All time and date information is formatted in RFC-822 format. All values are expressed in local time as defined in the workstation’s Windows settings. |
|
All time and date information is formatted according to the standards and formats selected in the workstation’s Windows settings. All values are expressed in local time as defined in the workstation’s Windows settings. |
|
All date information is formatted according to the standards and formats selected in the workstation’s Windows settings. (Time information is not included.) All values are expressed in local date format as defined in the workstation’s Windows settings. |
|
All time information is formatted according to the standards and formats selected in the workstation’s Windows settings. (Date information is not included.) All values are expressed in local time as defined in the workstation’s Windows settings. |
Binary Data |
Events logged to Novell Audit include a data field that can contain up to 3072 bytes of data. The following options determine how Novell Audit Report handles the information in the event’s data field. |
|
The data field is not included in the query results. |
|
The data field is included in the query results and displays in ASCII format. |
|
The data field is included in the query results and displays in hexadecimal format. |
|
Limits the amount of information that is included from the data field. The maximum is 3072 bytes. |
The Events pane allows you to view logging application properties as well as event data. The information provided on applications and their associated events can be used to define query statements, Notification Filters, and Heartbeat Notifications.
NOTE:For an explanation of event fields, see Section A.1, Event Structure. For information on defining Notification Filters and Heartbeat Notifications, see Section 7.0, Configuring Filters and Event Notifications.
Before you can view a logging application’s events, however, you must first import its log schema. The log schema catalogs the events that can be logged for a given application. It also provides the event descriptions and field labels that Novell Audit Report uses in its reports. For more information, see Section A.4, Log Schema Files.
Novell Audit stores each application’s log schema (LSC) file in its respective Application object. (English LSC files are stored under the NAuditAppSchemaEn attribute.) Therefore, when you import log schemas, Novell Audit Report reads the information from the Application objects on the designated logging server.
To import a logging application’s log schema in Novell Audit Report:
Click
> > .Specify the IP address or host name of the Secure Logging Server.
If you have multiple logging servers, select the Secure Logging Server that loads the logging application associated Application object at startup.
NOTE:To determine which Secure Logging Server loads the Application object, refer to the logging server’s Log Applications page. For more information, see Section 5.2, Creating Application Objects.
From the drop-down list box, select the language version of the log schema you want to import.
If an application does not have a log schema for the selected language, Novell Audit Report imports the application’s English log schema.
When you click Section 5.3, Application Object Attributes.
, Novell Audit Report connects to the logging server and imports the log schemas from all Application objects in the logging server’s supported Application containers. For more information, seeIMPORTANT:Novell Audit Report writes the log schema files to its cache file, lreport.lsc, in the Windows Home Directory. Therefore, the account you use to log in to Windows XP must have right to the account’s Windows Home Directory. The Windows Home Directory is defined in the User Profile. For more information, see Home Directory in Windows Help.
Click
in the confirmation dialog box.The
dialog box notes that you must restart Novell Audit Report before the new schemas appear in the Events tab.Restart Novell Audit Report.
The new applications and their associated events now appear in the Events pane.
IMPORTANT:To view events in the Events pane, the account you use to log in to Windows XP must have rights to the Windows Home Directory. The Windows Home Directory is defined in the User Profiles. For more information, see “Home Directory” in Windows Help.
To view a logging application’s properties in Novell Audit Report:
In the Events pane, select an application.
Right-click, then select
.The
window displays the following information:Table 8-9 Application Properties Window Options
Attribute |
Description |
---|---|
|
The name assigned to the current application. The Application Identifier is also stored in the application’s certificate. The Application Identifier is part of the Component string for every event logged from the current application. For more information, see Section 5.3, Application Object Attributes. |
|
The four-digit hex value assigned to the current application. The Application ID is part of the Event ID for every event logged from the current application. All Application IDs are assigned through Novell Developer Support and are maintained in the Novell Audit central registry. For more information, see Section 5.3, Application Object Attributes. |
|
The application description provided in the application’s log schema. |
To view a logging application’s events in Novell Audit Report:
In the Events pane, expand the application’s folder.
This exposes the application’s associated events. Only those events cataloged in the application’s log schema appear in this list.
Right-click, then select
.You can also double-click an event to bring up the Event Properties window.
The Event Properties window displays the Event ID, description, and field information.
For more information on event fields, see Section A.1, Event Structure.
To provide non-repudiable logs, Novell Audit can digitally sign each event that is logged to the data store. To sign an event, the logging application or the Platform Agent hashes the event data and signs the hash with the Logging Application’s private key. The signature is then stored as part of the event. This signature allows the auditor or investigator to determine if an event has been changed.
To allow auditors to determine if an event has been deleted or the sequence of events has been changed, Novell Audit can also chain its event signatures. That is, if event chaining is enabled, each event’s signature includes its own data as well as the signature from the previous event.
Event chaining is enabled in the Platform Agent’s configuration file, logevent. For information on configuring this option, see Logevent. It can also be configured through the Secure Logging Server object’s attribute. For more information, see Section 4.2.3, Logging Server Object Attributes .
If event chaining is enabled, Novell Audit Report can verify that all the events logged to the data store for each logging application are authentic; that is, it can validate the event signatures to determine if an application’s events have been tampered with, deleted, or if the sequence of events has been changed.
NOTE:Future iterations of Novell Audit Report will allow you to verify individual events.
To verify that an application’s logged events are authentic:
Click
> .Select the database where the events are logged.
Specify the table where the events are logged.
Select the logging application for the events you want to validate.
If the application is running on multiple systems, specify the IP address or host name of the Platform Agent that logged the events you want to verify in the Source Address field.
If you want to filter events, you can specify the component string for the events you want to validate in the
field.Specify the path and filename for the Logging Application Certificate.
Click
to locate the Logging Application Certificate in the directory tree.Click
.The following table provides more information on the Verify options.
Table 8-10 Verify Options
Option |
Description |
---|---|
|
The database containing the events you want to verify. |
|
The table containing the events you want to verify. |
|
The logging application’s events you want to verify. In most cases, each logging application has its own certificate. This means that event signatures are typically application-specific. Therefore, Novell Audit Report verifies event signatures on a per application basis. |
|
The IP address or host name of the Platform Agent that logged the events you want to verify. The only time you need to provide a source address is if the logging application is running on multiple systems. This allows Novell Audit Report to identify which event chain to verify. |
|
If you only want to verify the events for a specific component or module within a logging application, you can specify the component’s component string. For more information on component strings, see Section A.1, Event Structure and Section A.2, Component Strings. |
|
The path and filename for the Logging Application Certificate used to sign the application’s events. By default, the Logging Application Certificates are available in the following directories:
|
After Novell Audit Report verifies the application’s events, it returns the verification results.
Figure 8-4 Novell Audit Report Verification Results
If the event chain is authentic, Novell Audit Report returns a message that the table’s events have been verified as authentic. If the event chain is not authentic, Novell Audit Report lists each problem and its associated event.
There following table provides an explanation for each signature error.
Table 8-11 Signature Errors
In Novell Audit Report, the term “reports” refers specifically to Crystal Decisions Report Template Files (*.rpt). Crystal Decisions Reports graphically summarize specific sets of log data in pie charts, bar charts, and so forth.
Novell Audit Report allows you to import and run Crystal Decisions Reports. Some logging applications might also include their own predefined reports. You do not need Crystal Reports to run reports; however, if you have Crystal Reports, you can customize the predefined reports or you can design your own reports and import those reports into Novell Audit Report.
Novell Audit Report stores the report name and path in the Windows registry under HKEY_CURRENT_USER\Software\Novell\Log Report Application\1.0\Reports; however, the actual report file is stored in the directory structure.
The following sections discuss working with reports in Novell Audit Report:
To import Crystal Decisions Reports:
In the Reports pane right-click, then select
.In the
field, specify the name you want to appear in the Reports pane.In the
field, specify the path and filename for the Crystal Decisions Report.Click
to locate the file in the directory tree.When finished, click
.Novell Audit Report adds the report to the Reports pane.
Novell Audit Report stores the report name and path in the Windows registry under HKEY_CURRENT_USER\Software\Novell\Log Report Application\1.0\Reports; however, the actual report file is stored in the directory structure.
To delete a Report in Novell Audit Report:
In the Reports pane, select the report you want to delete.
Right-click, then click
.You do not need Crystal Reports to run Crystal Decisions Reports in Novell Audit Report.
To run a report in Novell Audit Report:
In the Databases pane, select the database you want to run the report on.
NOTE:If you do not select a database, the report runs against the default database. For more information, see Defining Your Default Database and Table .
In the Reports pane, select the report you want to run.
Right-click, then select
.Novell Audit Report opens the report in the Report window.
To update the report with live data, click the
button on the Report toolbar.After you run a report, Novell Audit Report allows you to drill down on a specific field value. A drill-down report returns all records that match the selected field value.
To run a drill-down report, simply double-click the field value you want to query.
HINT:The mouse pointer appears as a magnifying glass over drill-down fields.
When you run a drill-down report, Novell Audit Report returns all records that match the given field value. For example, if you drill down on a SourceIP field that has a value of 192.65.102.159, Novell Audit Report returns all records that have a value of 192.65.102.159 in their SourceIP field.
Novell Audit Report can export reports in a variety of formats including Adobe* Acrobat*, HTML, Microsoft Excel, ODBC, Rich Text Format (RTF), Microsoft Word, text, comma-separated values (CSV), and XML.
To export a report in Novell Audit Report:
Run a report.
For step-by-step instructions, see Running Reports .
Click
> .Select the file format that you want to export the report to (for example, .pdf, .txt, .xml, and so forth).
Select the export destination.
Click
.Novell Audit Report brings up the
dialog box.Specify the export filename, then click
.Novell Audit Report exports the file in the designated format to the designated path and filename.
To print a report to your default printer:
Run a report.
For step-by-step instructions, see Running Reports .
Click the
button on the Report toolbar.Novell Audit Report uses queries to request information from MySQL and Oracle databases. All Novell Audit Report queries are defined in SQL. Although you must be familiar with the SQL language to create SQL query statements, this is the most powerful and flexible query method.
If you are unfamiliar with the SQL language, Novell Audit Report includes a Query Expert to help you define basic query statements. You can also import existing query sets and run them within Novell Audit Report.
Novell Audit Report stores all queries in the Windows registry under HKEY_CURRENT_USER\Software\Novell\Log Report Application\1.0\Queries.
The following sections provide details on working with queries in Novell Audit Report:
To import existing queries, you must save the queries in a text-based query file. The query file format requires that you enclose the title of each query in square brackets [ ]. The query statement is on the line following the title. If you want to enable the option, enter Translate=1 on the line following the query statement. Empty lines are not legal and any line that starts with a hash (#) is commented out.
For information on the Manually Creating Queries.
option, seeThe following is a sample query file. It contains two queries: All Connection Cleared events and All Directory Remove events.
# Query File # [All ’Connection Cleared’ events] SQL=SELECT * FROM log WHERE eventid=655622 Translate=1 [All ’Directory Remove’ events] SQL=SELECT * FROM log WHERE eventid=655368 Translate=1
To import SQL queries in Novell Audit Report:
Click
> > .Select the query file in the directory tree, then click
.The queries contained in the query file now appear in the Query pane.
All imported queries are stored in the Windows registry under HKEY_CURRENT_USER\Software\Novell\Log Report Application\1.0\Queries.
All queries are stored in the Windows registry under HKEY_CURRENT_USER\Software\Novell\Log Report Application\1.0\Queries.
To manually create a query in Novell Audit Report:
Click
> .You can also right-click in the Queries pane and select
.In the
field, specify the name you want to use to refer to this query.Define the query statement in the Query window.
Select
if you want Novell Audit Report to label the query results with the field titles defined in the log schema.When finished, click
.NOTE:When using mySQL, use the LIMIT statement to prevent an excessively large number of records from being returned. Even with a maximum value set in Novell Audit Report, mySQL returns up to LIMIT records.
The query now appears in the Queries pane.
The following table provides further information on the
options.Table 8-12 Direct Query Options
Query Option |
Description |
---|---|
|
The name you want to use to refer to this query. The query name is listed in the Queries pane and it appears as the title in the query results window. |
|
The query statement. Queries are defined using the SQL query language. For basic information on SQL queries, see the MySQL Reference Manual. If you want your query to dynamically build the FROM clause using the currently selected database and table, enter FROM $l in the query statement. |
|
Select if you want Novell Audit Report to label the column headings with the field titles defined in the log schema.We recommend that you select this option only for queries that return one type of event. If you select this option for queries that return multiple types of events, Novell Audit Report labels the column headings with the field titles from the last event returned in the query. IMPORTANT:For this option to work, you must import each application’s log schema. For information, see Importing Log Schemas . |
IMPORTANT:To use the Query Expert, the account you use to log in to Windows XP must have rights to the Windows Home Directory. The Windows Home Directory is defined in the User Profiles. For more information, see Home Directory in Windows Help.
If you are unfamiliar with the SQL query language, you can use the Query Expert to help you define basic database queries. The Query Expert simplifies the process of creating a query by allowing you to choose from lists of predefined parameters. The Query Expert then constructs the query statement from the parameters you select.
Figure 8-5 Novell Audit Report Query Expert
Because the Query Expert can provide only a limited set of parameters, the queries it creates are very simple. However, it is the easiest way to create queries and it is capable of creating most base-level queries.
To create a query using the Query Expert in Novell Audit Report:
Click
> .Specify the name you want to use to refer to this query in the
field.Define the query parameters.
In the
tab, define the condition and the event.In the
tab, select a time parameter.When finished, click
.NOTE:When using mySQL, use the LIMIT statement to prevent an excessively large number of records from being returned. Even with a maximum value set in Novell Audit Report, mySQL returns up to LIMIT records.
The query now appears in the Queries pane.
The following table provides further information on the Query Expert’s parameters.
Table 8-13 Query Expert Parameters
The basic structure of query statements created with the Query Expert is as follows:
SELECT * FROM table WHERE eventid condition event(s) AND clienttimestamp> $time_parameter
The Query Expert provides some quick and easy ways to create queries for all the events in a single application or for a single event.
To create a query for all the events in a single application:
Select an application in the Events pane.
Right-click, then select
.In the Timeperiod tab, select a time parameter.
Click
.To create a query for a single event:
Expand one of the application folders in the Events pane.
Select an event.
Right-click, then select
.In the Timeperiod tab, select a time parameter.
Click
.To modify a Query in Novell Audit Report:
In the Queries pane, select the query you want to modify or delete.
Right-click, then select
.Modify the query.
For information on the query options, see Creating Saved Queries .
To delete a Query in Novell Audit Report:
In the Queries pane, select the query you want to delete.
Right-click, then select
.Novell Audit Report has some powerful custom macros that simplify data queries. The following table lists the custom query macros that can used in Novell Audit Report.
IMPORTANT:All query macros must be preceded by a dollar sign ($).
Table 8-14 Novell Audit Report Custom Query Macros
The following sample query statement illustrates how the query macros can be used:
SELECT * FROM $l WHERE eventid='$Prompt(Please provide the Event ID to query:)' AND clienttimestamp>$WEEK
To run a query in Novell Audit Report:
Select the database you want to query.
Click the
field on the status bar.Select the default database from the list.
Select the table you want to query.
Click the
field on the status bar.Select the default table from the drop-down list, then press Enter.
In the Queries pane, select the query you want to run.
Right-click, then select
.Novell Audit Report returns the query results in a data table; rows represent individual records and columns represent fields within those records. You can click any of the column headings to sort the results by that field.
Figure 8-6 Query Results in Novell Audit Report
If you selected the
option when you defined the query, Novell Audit Report labels the query results with the field titles defined in the log schema. Novell Audit Report also displays each event’s field titles as you mouse over the event fields.NOTE:We recommend that you select only the Manually Creating Queries.
option for queries that return one type of event. If you select this option for queries that return multiple types of events, Novell Audit Report labels the column headings with the field titles from the last event returned in the query. For more information on the Translate Column Titles option, seeEvent Distributions tell you how many times each type of event has occurred for a given application. For example, if you run an Event Distribution for NetWare, Novell Audit Report returns the number of times each event listed in the NetWare log schema occurred.
To run an Event Distribution in Novell Audit Report:
Select the database you want to query.
Click the
field on the status bar.Select the default database from the list.
Select the table you want to query.
Click the
field on the status bar.Select the default table from the drop-down list, then press Enter.
In the Events pane, select an application.
Right-click, then select
.Novell Audit Report returns the number of times each of the application’s events occurred in the selected database.
Figure 8-7 Event Distribution Report in Novell Audit Report
The Distribution window lists the Event ID and how many times that Event ID occurred. To sort on the Event ID, click the
column. To sort by the number of occurrences, click the Count column.If the application’s log schema provides event descriptions, Novell Audit Report displays those descriptions in the Event ID column. However, when you sort on the Event ID column, events are sorted by their numeric Event ID, not by their description. Consequently, the event descriptions are not listed in alphabetical order, but related events are grouped together.
If you want to know how many events have been logged for a given application, or the number of occurrences for a specific event, you can run an event count. An event count simply returns the number of events logged to the current database.
To run an event count for a logging application in Novell Audit Report:
Select the database you want to query.
Click the
field on the status bar.Select the default database from the list.
Select the table you want to query.
Click the
field on the status bar.Select the default table from the drop-down list, then press Enter.
Select an application in the Events pane.
Right-click, then select
.Novell Audit Report returns the total number of events that have been logged for the selected application.
To run an event count for a single event:
Select the database you want to query.
Click the
field on the status bar.Select the default database from the list.
Select the table you want to query.
Click the
field on the status bar.Select the default table from the drop-down list, then press Enter.
Expand an application folder in the Events pane.
Select one of the application’s events.
Right-click, then select
.Novell Audit Report returns the total occurrences of the selected event.
After it returns the query results, Novell Audit Report allows you to further process the data by dynamically sorting records, running drill-down queries, copying specific records, and viewing event properties.
To sort the query results by a specific field, click the corresponding field heading. Novell Audit Report toggles between ascending and descending order. The first time you click, Novell Audit Report sorts the records in ascending order. If you click again, it sorts the record in descending order, and so forth.
After you run a report, Novell Audit Report allows you to drill down on a specific field value. A drill-down report returns all records that match the selected field value.
To run a drill-down query:
Position your mouse pointer over the field value you want to query.
Right-click, then select
.Novell Audit Report returns all records that match the selected field value. For example, if you drill-down on a
field that has a value of 192.65.102.159, Novell Audit Report returns all records that have a value of 192.65.102.159 in the field.To copy specific records from the query results:
Select the records you want to copy.
Shift-click to select contiguous records.
Ctrl+click to select non-contiguous records.
Right-click, then select
.You can also press Ctrl+C.
The query data can be copied to the Windows Clipboard in raw format, it can have field delimiters, and it can include field headers. How information is copied to the Windows Clipboard is managed through the Clipboard settings in the Novell Audit Report Options menu. For more information, see Section 8.2.5, Setting Default Options in Novell Audit Report.
NOTE:If the
option is selected in the menu, you can copy all the records in the query results window by not selecting any records and pressing Ctrl+C.To view a specific a specific record’s properties:
Select the record you want to view.
Right-click, then select
.You can also double-click the record.
Novell Audit Report can export query results in the following formats:
To export query results in Novell Audit Report:
Run a query.
For step-by-step instructions, see Running Queries .
Click
> .In the
menu, define the export file’s path and filename.Click the
drop-down list, then select the export format.Click
.Select the records you want to export.
Shift-click to select contiguous records.
Ctrl+click to select non-contiguous records.
Click
> .To print the query results to your default printer:
Run a query.
For step-by-step instructions, see Running Queries .
Click
> .You can also right-click, then select
.To print specific records from the query results:
Select the records you want to print.
Shift-click to select contiguous records.
Ctrl+click to select non-contiguous records.
Click
> .You can also right-click, then select
.