Symantec Privileged Access Management

 View Only
  • 1.  The users' session does not appear in the log

    Posted Nov 09, 2018 02:25 PM

    When a user logs in CA PAM, the record does not appear in the log. Only super appears.

    What adjust i have to do for to solve this??

     

    Thank You.

     

    Adolfo.



  • 2.  Re: The users' session does not appear in the log

    Broadcom Employee
    Posted Nov 09, 2018 02:57 PM

    Hello Adolfo, Are you talking about the session logs? They definitely should have an entry for every user logon. Is it possible that you have a filter in place that only shows you super user logon messages?



  • 3.  Re: The users' session does not appear in the log

    Posted Nov 09, 2018 03:16 PM

     

    Hello Ralf,
    Sincerely, no there are log filter, it is suspicious. The user have to appear in the logs is "serveradmin12".

     

    Please see the image.

     

    Thank You!

     

    Adolfo.



  • 4.  Re: The users' session does not appear in the log

    Broadcom Employee
    Posted Nov 09, 2018 05:19 PM

    Hi Adolfo, Maybe this is a cluster environment and the user is logged on to another node? I don't see how the messages could be there for super but not for other users.



  • 5.  Re: The users' session does not appear in the log

    Posted Nov 10, 2018 03:23 PM

    Hello Ralf,

    If it were that way, I think that PAM has to show the user's record at the same time of both nodes of the cluster.

     

    Is it true?

     

    Thank You!

     

    Adolfo.



  • 6.  Re: The users' session does not appear in the log

    Posted Nov 10, 2018 03:39 PM

    Hello Ralf!

    Effectively reviewing the log in the other node, the user's record serveradmin12 is registered in it. Why does this happen? The information of the logs must be updated in both at the same time.

     

    Is it true?

     

    Thank You!

     

    Adolfo.



  • 7.  Re: The users' session does not appear in the log

    Broadcom Employee
    Posted Nov 10, 2018 04:47 PM

    Hi Adolfo, No, the session log is not replicated across cluster nodes.



  • 8.  Re: The users' session does not appear in the log

    Posted Nov 10, 2018 05:04 PM

    Hello Ralf,

     

    But how can I check session log in a single point without having to change from one node to another?

    Maybe For the client it is uncomfortable to check the logs in this way. Is there an alternative?

     

    Thank You!

     

    Adolfo.



  • 9.  Re: The users' session does not appear in the log

    Broadcom Employee
    Posted Nov 12, 2018 02:31 PM

    Hi Adolfo, If you integrate all cluster members with the same syslog server, you will find all messages there.