Enhanced Auditing does not audit all actions performed by non-Vault Service Account (VSA) users.
book
Article ID: 100073664
calendar_today
Updated On:
Description
Error Message
The DTrace log indicates the below exceptions:
369 16:42:28.795 [13216] (AcceleratorService) EV-H {-} {AuditThread} {C2} Error while performing audit asynchronously . Exception - System.Reflection.TargetInvocationException: Exception has been thrown by the target of an invocation. ---> System.Security.AccessControl.PrivilegeNotHeldException: The process does not possess the 'Admin or ViewReports' privilege which is required for this operation.| at KVS.Accelerator.Common.TasksModuleInfo.DemandViewReportsForWebAccess(ICustomerDetails& details)| at KVS.Accelerator.Common.TasksModuleInfo.get_ReportsDSN()| at KVS.Accelerator.Case.Cases..ctor()| --- End of inner exception stack trace ---| at System.RuntimeTypeHandle.CreateInstance(RuntimeType type, Boolean publicOnly, Boolean noCheck, Boolean& canBeCached, RuntimeMethodHandleInternal& ctor, Boolean& bNeedSecurityCheck)| at System.RuntimeType.CreateInstanceSlow(Boolean publicOnly, Boolean skipCheckThis, Boolean fillCache, StackCrawlMark& stackMark)| at System.RuntimeType.CreateInstanceDefaultCtor(Boolean publicOnly, Boolean skipCheckThis, Boolean fillCache, StackCrawlMark& stackMark)| at System.Activator.CreateInstance(Type type, Boolean nonPublic)| at System.Activator.CreateInstance(Type type)| at KVS.Accelerator.Web.BO.BO_Base.GetRemoteObject[T](String name)| at KVS.Accelerator.Web.BO.BO_Base.set_CacheKey(String value)| at KVS.Accelerator.Web.BO.BO_Roles.GetCacheObj(Cache aCache)| at KVS.Accelerator.RBO.RoleAssignmentAuditHelper.BuildRoleAssignmentAuditEntityForCase(BO_Case BOCase)| at KVS.Accelerator.RBO.RoleAssignmentAuditHelper.BuildAndSetAuditEntities(BO_Case boCase, List`1 auditEntities)| at KVS.Accelerator.RBO.CaseAuditHelper.CallPerformAudit(BO_Case boCase, Boolean bIsFolder, Boolean IsNewCase, Boolean isRoleAssignAuditingEnabled)| at KVS.Accelerator.RBO.RBO_Cases.<>c__DisplayClass27_0.b__1()| at KVS.Accelerator.RBO.AuditUtils.AuditThread.ThreadStartWrapperApi()
Cause
This is under investigation.
Resolution
As a workaround, add the non-VSA user to the Administrator User or Group on the EVBAAdmin page under DA customer properties and restart the Enterprise Vault Accelerator Manager service.
This issue is presently under investigation by our Engineering Team. Depending on the results of this investigation, it may be addressed through a patch or hotfix in current or future software releases. However, this specific issue is not currently scheduled for inclusion in any upcoming release. If this issue has a significant business impact on your continued use of the product, please contact your Sales representative or the Sales team to discuss your concerns.
Note: Customers experiencing this issue are encouraged to contact Veritas Technical Support as data is still being collected to assist in resolving this issue.
Issue/Introduction
Enhanced Auditing does not capture the complete modification information if a modification is made through a non-VSA account.
Additional Information
JIRA: CFT-7042
Was this article helpful?
thumb_up
Yes
thumb_down
No