Time based Auditlog Rollover does not work
search cancel

Time based Auditlog Rollover does not work

book

Article ID: 4267

calendar_today

Updated On:

Products

CA Single Sign On Secure Proxy Server (SiteMinder) CA Single Sign On SOA Security Manager (SiteMinder) CA Single Sign-On

Issue/Introduction

We're running a Policy Server, and we noticed that the smaccess log is not being rolled over at the scheduled time (Everyday @ 00:00 hours) on Siteminder 12.8  Policy Sever.

This happens for time based Audit log rollover even though the LastRolloverTime registry is set to 0 as below:

HKEY_LOCAL_MACHINE\SOFTWARE\Netegrity\SiteMinder\CurrentVersion\Reports=xxxxxxxx

LastRolloverTime= 0; REG_DWORD

How can we solve this ?

 

Environment

Policy Server 12.8 

RedHat 6.x / 7.x 64bit

Cause

The algorithm is failing when the roll time is set to 00:00. The algorithm will work if the roll time is set to 23:59

 

 

Resolution

https://techdocs.broadcom.com/us/en/symantec-security-software/identity-security/siteminder/12-8/using/policy-server-management-console.html

Note:

The work around to resolve the issue is to set the Audit Logfile Rollover time to 23:59.