Hi folks,
Have any of you created an automated process of capturing events that occur within IDMS, that sends the information to a Security Information and Event Management (SIEM) tool? I am thinking in terms of production schema changes, user login/logout, IDMS internal security administration (alter, drop, grant, revoke, etc.), and application data changes.
Does your process work directly from the IDMS journal and/or log archives, SMF, or from re-constituted extracts of the journal archives, or from exit routines? I know there are Journal analyzer tools that build an extract from the journal archive, allowing for customization of reports and further extraction of data.
Thanks for your responses, Alan Slezewick