Working with User Activity Auditing

The following settings apply to the security officer (QSECOFR)and any other users with similar authority.

  1. Select 31. User Activity Auditing from the OS/400 Audit Features menu (STRAUD > 1 > 31). The Set User Auditing screen appears.
  2.                               ​ Set User Auditing​                                
                                                                                    
                                                                                    
     Select User or Group Profile, press Enter:​                                     
                                                                                    
     User profile  . . . . . . .​                  ​ Name​                             
     ​
     -or-​                                                                          
     Group profile . . . . . . .​                  ​ Name​                             
     Enables setting of all User Profiles in the group profile.​                     
                                                                                    
     Retrieve auditing of User .​                  ​ Name​                             
     Sets the default of the Audit values as per those of the specified User.​       
                                                                                    
                                                                                    
                                                                                    
                                                                                    
                                                                                    
                                                                                    
                                                                                    
                                                                                    
                                                                                    
     F3=Exit​  ​ F4=Prompt​                                                            
                                                                                    
                                                                                    
  3. In Group Profile, enter the user profile QSECOFR.
  4. Set the parameters as shown below:
  5.                               ​ Set User Auditing​                                
                                                                                    
     Group Profile:​  QSECOFR   ​ Security Officer                                  ​  
                                                                                    
     Apply for all GrpPrf users.​  Y           ​ Y=Yes, N=No​                          
                                                                                    
     Object access auditing  . .​  1           ​ 1=*ALL, 2=*CHANGE, 3=*NONE, 4=*SAME​  
     User activity auditing  . .​  2           ​ 1=*ALL, 2=*LIST,   3=*NONE, 4=*SAME​  
                                                                                    
     Type Y to select.                                                         ​     
      Y Commands       ​  Y Security events​                                          
     ​
     Y Create objects ​  Y Service tools  ​                                          
     ​
     Y Delete objects ​  Y Spool files    ​                                          
     ​
     Y Job tasks      ​  Y Sys management ​                                          
     ​
     Y Obj Move⁄Rename​                                                             
     ​
       Office services​                                                             
     ​
     Y Optical volumes​                                                             
     ​
     Y Auth adoption  ​                                                             
     ​
     Y Save⁄Restore   ​                                                             
                                                                      ​
           Bottom​ 
                                                                                    
     F3=Exit​  ​ F11=Display Keywords​     ​ F18=Outcoming Audit Types (by cursor)​      
                                                                                    
                                                                                    

Use the same methods to set User Auditing settings for other users and groups, as appropriate.