CHAPTER8Effective Auditing for Accountability

Auditing is one of those not-so-exciting areas of security that everyone knows they should do but rarely ever does. There are many reasons for this. Some don’t know what to audit; some don’t know how to audit; some don’t know what to do with the audit records once they have audited; and some believe the audit performance overhead is a penalty that doesn’t justify the process.

This chapter explores each of these issues. You’ll see why auditing is not only possible, but also invaluable. Manual ways to audit will be examined as well as looking at database standard auditing and the improved fine-grained auditing technology. You’ll see how the audit records will show you who, what, where, when, and how. ...

