Oracle Analytics Cloud and Server Idea Lab

Welcome to the Oracle Analytics Community: Please complete your User Profile and upload your Profile Picture

Audit menu and logs in the console

Delivered
71
Views
4
Comments

Description

Ability to run an audit of all user permissions, roles and access for audit purposes. Who is accessing which report, data set, section at which date/time.

Use Case and Business Need

Requested for SOX audits.

Original Idea Number: 290022887a

5
5 votes

Delivered · Last Updated

Comments

  • To expand up on this one should be able to know the last modified/updated by for a catalog object including the deletion of content . In current way and from we are unable to support such Audit requests from SOX and compliance.

  • Oracle Analytics allows admins to track user activity and system usage to improve performance. 

    Oracle Analytics keeps track of all user transactions in an audit trail for optimal governance within one unified platform.
    • Security Events Logging/Audit Trail: protection of the log files is based on OS file security; failed logon attempts are tracked in the log files and authentication and authorization events are captured in the log files as well.
    • To protect the logs against tampering, the audit information is logged to a database and fully leverages database security.  

     

    Oracle Analytics enables administrators to track usage at the user and system level across analytics assets so they can easily fine-tune performance for the analytics experience.

    Some of the information tracked includes:
    • Usage tracking logs all user data access including user identity, queries, timestamps, and the report/dashboard/analysis that were used.
    • This information is available in a set of predefined dashboards that provide an audit trail of analytics usage.  This tracking is also used by the platform's own performance optimization algorithms to recommend and create aggregate tables to improve performance.
    • Metadata can be checked into a source code control system to track authorizations available for any specific date.

    With Basic Usage Tracking users can see in real-time:

    • # of logical queries in a project
    • # of Physical Queries 
    • # of sessions
    • Average Response Time
    • # of Sessions
    • # of logical queries by Start Date
    • # of logical queries by Subject area name
    • # of logical queries by Presentation name

    Data Objects report canvas tab will show:

    • top dashboard accessed by user
    • top subject areas used by user
    • Top data objects, dimensions, and metrics generated by user 

    you can also see the actual query used and the language of the query

  • This only applies for the BIP content not for the core OAC catalog content to audit the user activity on who created a new report, modified the report or even deleted the report from a shared area. In the SOX controls stand point we need to be able to show the segregation of duties for certain canned dashboard and reports in the current usage tracking only capture the execution not necessarily the other activities.

  • Amalia Sciutto
    Amalia Sciutto Rank 1 - Community Starter

    For security purpose we need to have audit logs of administration tasks in OAC (Cloud).

    • Who grant and revoque access
    • Who create, update adn delete users, application roles.
    • Who create, update and delete resources/objects.

    Also audit reports:

    • Application role memberships
    • Permissions of resources