123ArticleOnline Logo
Welcome to 123ArticleOnline.com!
ALL >> Business >> View Article

Determining What To Audit And Analyzing Audit Records

Profile Picture
By Author: Shirley Green
Total Articles: 129
Comment this article
Facebook ShareTwitter ShareGoogle+ ShareTwitter Share

In this practice, you will create a list of audit requirements for a fictitious company, and then analyze common MCSE 2003 exams(http://www.mcsa-70-291.com) records found in the security log. Complete the exercises that follow. If you are unable to answer a question, review the lesson materials and try the question again. You can find answers to the questions in the "Questions and Answers" section at the end of the chapter.
Exercise 1: Determining What to Audit
Read the following scenario and then answer the question that follows.
Scenario You are an IT auditor at Wingtip Toys. You are asked to specify the audit requirements for a file server in the research department. The file server will store confidential research information. Files are protected by EPS encryption. Communications between researchers' workstations and the file server are protected by IPSec. Only the researchers and their workstations are allowed to access the file server.
Figure 9-23 shows the configuration for auditing for use of the Take MCSE study guides free download(http://www.examshots.com/certification/MCSE-2003-50.html) Ownership ...
... permission. To ensure that the administrator is caught, you should also audit for privilege use. Two possible events can be recorded. If the administrator attempts access while logged on interactively to the server on which the file resides, the Se_TakeownershipPrivilege, event 578, is recorded. This is a privilege usage event. However, if she takes ownership remotely, the file Take Ownership permission (WRITE_OWNER) is used. This is object access event 560. With all this noted, remember that administrators can also delete audit logs, either in their entirety or by individual events. If you have untrustworthy administrators, the only solution is to not allow them to be administrators.
Also To prevent an administrator from reading a file, you can encrypt the file. However, if you do so, make sure the administrator is not the file recovery agent. To learn why and what you can do to prevent administrators from reading sensitive files, see Lesson 5, "Designing a File Encryption and Decryption Strategy" CCNA exam(http://www.upcert.com) later in the chapter.

Total Views: 433Word Count: 329See All articles From Author

Add Comment

Business Articles

1. Iv7 Game: Download, Apk, App Features, And Latest Updates
Author: neetu jaiswal

2. Shopify Seo Services: Grow Your Online Store With Bloom Agency
Author: neetu jaiswal

3. Why The Telecom Industry Is Moving Toward A Unified Digital Bss Platform
Author: Kevin

4. How Iot Telecom Is Turning Networks Into Intelligent Business Platforms
Author: Kevin

5. Website Design Company In Coimbatore: Creating Websites That Help Businesses Grow
Author: Open Design

6. What Should Australian Founders Expect From A B2b Demand Generation Agency?
Author: Mary

7. Neet Ug 2026 Answer Key: Step-by-step Guide To Score Calculation
Author: ziaacademy

8. The Digital Lending Boom Is Fueling Demand For Kyc Verification Projects In India
Author: Neha Singh

9. Hastelloy C2000 Pipes Exporters
Author: ashish mehta

10. Omio Api For European Travel Price Trends
Author: Acto96

11. Best Flower Delivery In Andrews Ganj | Order Online – Sai Flower
Author: saiflower

12. Scrape Baltic Grocery Market Intelligence Using Rimi Api
Author: Acto96

13. Top 10 Low Invesment Frachises 2026
Author: Praduman

14. Atlanta Homeowners Urged To Act Quickly After Roof Leaks
Author: Ximena Ortiz Dávila

15. Best Obstetrician Gynecologist In Ahmednagar – Trusted Women's Healthcare
Author: Pankaj Shinde

Login To Account
Login Email:
Password:
Forgot Password?
New User?
Sign Up Newsletter
Email Address: