Commentary

George Crump
 

Auditing File Access

During a recent briefing with Cofio Software on its new AIMstor product, the discussion of file auditing or file logging came up. File auditing is the ability to see who has created, modified, or deleted a file and to take appropriate measures.

During a recent briefing with Cofio Software on its new AIMstor product, the discussion of file auditing or file logging came up. File auditing is the ability to see who has created, modified, or deleted a file and to take appropriate measures.There are a few packages out there that do so as a standalone capability; FileSure from ByStorm and Quest Software's Intrust Plugin for File Access.

There also are various content management platforms out there. The challenge with these is getting everyone to use them consistently, which seldom seems to happen. These file-level utilities exist and will grow in demand because not everyone is going to implement content management platforms and even if you do, that consistent use issue keeps coming up. With file auditing you can know who has accessed what files, who has modified those files, and who has deleted those files. This is good. For example, it would be helpful to know that one of your top administrators had accessed that annual salary spreadsheet prior to your review with him. Ever wonder how someone gets all of that payroll detail? Ever wish you could prove it? File auditing lets you know. These tools are now becoming more sophisticated where they can take action based on this information. For example, you could have a policy that dictates that if the CFO changes a spreadsheet in the finance directory, that version of that file is copied out to a WORM-based Disk Archive for compliance reasons. Or if a file is copied by a user to a USB stick, you are sent an e-mail the moment it happens. Many copies to USB sticks are legitimate, but a quick scan of what is being copied where might be a good idea. Of course, you can stop this copy to USB all together with data blockage (or the more draconian, disablement of USB) which should really be integrated into the whole process ... more on that tomorrow...


More Storage Insights

White Papers

More >>

Reports

More >>

Webcasts

More >>

Track us on Twitter: http://twitter.com/storageswiss.

Subscribe to our RSS feed.

George Crump is founder of Storage Switzerland, an analyst firm focused on the virtualization and storage marketplaces. It provides strategic consulting and analysis to storage users, suppliers, and integrators. An industry veteran of more than 25 years, Crump has held engineering and sales positions at various IT industry manufacturers and integrators. Prior to Storage Switzerland, he was CTO at one of the nation's largest integrators.


Related Reading




Currently we allow the following HTML tags in comments:

Single tags

These tags can be used alone and don't need an ending tag.

<br> Defines a single line break

<hr> Defines a horizontal line

Matching tags

These require an ending tag - e.g. <i>italic text</i>

<a> Defines an anchor

<b> Defines bold text

<big> Defines big text

<blockquote> Defines a long quotation

<caption> Defines a table caption

<cite> Defines a citation

<code> Defines computer code text

<em> Defines emphasized text

<fieldset> Defines a border around elements in a form

<h1> This is heading 1

<h2> This is heading 2

<h3> This is heading 3

<h4> This is heading 4

<h5> This is heading 5

<h6> This is heading 6

<i> Defines italic text

<p> Defines a paragraph

<pre> Defines preformatted text

<q> Defines a short quotation

<samp> Defines sample computer code text

<small> Defines small text

<span> Defines a section in a document

<s> Defines strikethrough text

<strike> Defines strikethrough text

<strong> Defines strong text

<sub> Defines subscripted text

<sup> Defines superscripted text

<u> Defines underlined text

InformationWeek encourages readers to engage in spirited, healthy debate, including taking us to task. However, InformationWeek moderates all comments posted to our site, and reserves the right to modify or remove any content that it determines to be derogatory, offensive, inflammatory, vulgar, irrelevant/off-topic, racist or obvious marketing/SPAM. InformationWeek further reserves the right to disable the profile of any commenter participating in said activities.

Disqus Tips To upload an avatar photo, first complete your Disqus profile. | View the list of supported HTML tags you can use to style comments. | Please read our commenting policy.
T-Shirt Giveaway T-Shirt Giveaway: Each week we're selecting one great comment from our readers. The author of the comment will receive an InformaitonWeek Community t-shirt. So get posting!
Subscribe to RSS

Resource Links