SADE: Security Audit Enable
This message indicates that the originating service (node ID) has restored audit message logging; audit messages are again being collected and delivered.
Code | Field | Description |
---|---|---|
AETM |
Enable Method |
The method used to enable the audit. |
AEUN |
User Name |
The user name that executed the command to enable audit logging. |
RSLT |
Result |
This field has the value NONE. RSLT is a mandatory message field, but is not relevant for this message. NONE is used rather than SUCS so that this message is not filtered. |
The message implies that logging was previously disabled (SADD), but has now been restored. This is typically only used during bulk ingest to improve system performance. Following the bulk activity, auditing is restored and the capability to disable auditing is then permanently blocked.