shibboleth-dev - [Shib-Dev] Parseable audit logs for SP
Subject: Shibboleth Developers
List archive
- From: Philip Brusten <>
- To: "" <>
- Subject: [Shib-Dev] Parseable audit logs for SP
- Date: Tue, 8 Feb 2011 22:28:58 +0100
- Accept-language: en-US, nl-BE
- Acceptlanguage: en-US, nl-BE
Hi,
I posted a feature request for the SP at the Jira:
https://bugs.internet2.edu/jira/browse/SSPCPP-349
Scott suggested to open the discussion to this list, so hereby...
I'll repeat my suggestion, feel free to comment on this:
It would be nice if we had an audit-log similar to the audit log from the
IdP.
The transaction log already provides some useful information, but is not
easily parseable and does not contain a useful identifier of the user (e.g.
REMOTE_USER variable)
idp-audit.log format:
auditEventTime|requestBinding|requestId|relyingPartyId|messageProfileId|assertingPartyId|responseBinding|responseId|principalName|authNMethod|releasedAttributeId1,releasedAttributeId2,|nameIdentifier|assertion1ID,assertion2ID,|
I think, the SP audit log should contain at least the following fields
delimited by a '|':
- Authentication Time
- SessionId
- REMOTE_USER if any
- Client IP address
- Authentication Context Class
- User-agent
- Application id
- entityID of SP
- entityID of IdP
- Protocol
- Binding
- filtered attribute IDs
Regards,
Philip
PS: I'll be out of the office until monday
- [Shib-Dev] Parseable audit logs for SP, Philip Brusten, 02/08/2011
- Re: [Shib-Dev] Parseable audit logs for SP, Cantor, Scott E., 02/08/2011
- Re: [Shib-Dev] Parseable audit logs for SP, Chad La Joie, 02/08/2011
- Re: [Shib-Dev] Parseable audit logs for SP, Cantor, Scott E., 02/08/2011
- Re: [Shib-Dev] Parseable audit logs for SP, Kristof Bajnok, 02/09/2011
- RE: [Shib-Dev] Parseable audit logs for SP, Cantor, Scott E., 02/09/2011
- Re: [Shib-Dev] Parseable audit logs for SP, Peter Schober, 02/09/2011
- RE: [Shib-Dev] Parseable audit logs for SP, Cantor, Scott E., 02/09/2011
- Re: [Shib-Dev] Parseable audit logs for SP, Chad La Joie, 02/09/2011
- RE: [Shib-Dev] Parseable audit logs for SP, Cantor, Scott E., 02/09/2011
- Re: [Shib-Dev] Parseable audit logs for SP, Philip Brusten, 02/14/2011
- Re: [Shib-Dev] Parseable audit logs for SP, Peter Schober, 02/09/2011
- RE: [Shib-Dev] Parseable audit logs for SP, Cantor, Scott E., 02/09/2011
Archive powered by MHonArc 2.6.16.