diff options
| author | Ade Lee <alee@redhat.com> | 2017-05-16 17:29:45 -0400 |
|---|---|---|
| committer | Ade Lee <alee@redhat.com> | 2017-05-23 14:31:54 -0400 |
| commit | 1c8c61ef235bb57e744e9a8cfa5e1ff0cebb06a2 (patch) | |
| tree | 67efbe323389114660ae79e918c9e621d61f86d7 /base/kra/src/org | |
| parent | 3249ddc2c19f6f5ded11823b345c9c58bae4750b (diff) | |
| download | pki-1c8c61ef235bb57e744e9a8cfa5e1ff0cebb06a2.tar.gz pki-1c8c61ef235bb57e744e9a8cfa5e1ff0cebb06a2.tar.xz pki-1c8c61ef235bb57e744e9a8cfa5e1ff0cebb06a2.zip | |
Encapsulate the archival audit log
This patch encapsulates the SECURITY_DATA_ARCHIVAL_REQUEST and
PRIVATE_DATA_ARCHIVAL_REQUEST audit logs as audit events.
The PRIVATE_DATA_ARCHIVAL_REQUEST events are mapped to the
SECURITY_DATA ones to simplify the whole structure. They
used to provide an archivalID parameter which was pretty much
meaningless as it was at best just the same as the request id
which is alreadty logged. So this is now dropped.
Change-Id: I705d25ce716c73f2c954c5715b0aafdad80b99d2
Diffstat (limited to 'base/kra/src/org')
| -rw-r--r-- | base/kra/src/org/dogtagpki/server/kra/rest/KeyRequestService.java | 9 |
1 files changed, 4 insertions, 5 deletions
diff --git a/base/kra/src/org/dogtagpki/server/kra/rest/KeyRequestService.java b/base/kra/src/org/dogtagpki/server/kra/rest/KeyRequestService.java index 38f7e93d5..b0bcff24b 100644 --- a/base/kra/src/org/dogtagpki/server/kra/rest/KeyRequestService.java +++ b/base/kra/src/org/dogtagpki/server/kra/rest/KeyRequestService.java @@ -50,6 +50,7 @@ import com.netscape.certsrv.key.KeyRequestResponse; import com.netscape.certsrv.key.SymKeyGenerationRequest; import com.netscape.certsrv.logging.AuditEvent; import com.netscape.certsrv.logging.ILogger; +import com.netscape.certsrv.logging.event.SecurityDataArchivalEvent; import com.netscape.certsrv.request.RequestId; import com.netscape.certsrv.request.RequestNotFoundException; import com.netscape.cms.realm.PKIPrincipal; @@ -354,13 +355,11 @@ public class KeyRequestService extends SubsystemService implements KeyRequestRes } public void auditArchivalRequestMade(RequestId requestId, String status, String clientKeyID) { - String msg = CMS.getLogMessage( - AuditEvent.SECURITY_DATA_ARCHIVAL_REQUEST, + audit(new SecurityDataArchivalEvent( getRequestor(), status, - requestId != null? requestId.toString(): "null", - clientKeyID); - auditor.log(msg); + requestId, + clientKeyID)); } public void auditSymKeyGenRequestMade(RequestId requestId, String status, String clientKeyID) { |
