Definition: Audit ABB is an Application Service that enables the implementation of comprehensive procedural services capable of receiving inputs from different building blocks to ensure their correct behaviour, security or compliance with standards, regulations and best practices.
Source: Inspired in SIMPL
Source reference: https://digital-strategy.ec.europa.eu/en/news/simpl-cloud-edge-federations-and-data-spaces-made-simple
Example: The following implementation is an example on how this specific Architecture Building Block (ABB) can be instantiated as a Solution Building Block (SBB): OpenIAM audit service - OpenIAM Auditing Service ensures that detailed information about events and activities associated with identities or resources are logged into a centralized repository and be tracked. It offers the following features: • Sign-on, Sign-off, • User: create, update, delete or disable accounts, • Role: create, update, delete or disable accounts, • Resource: create, update, delete or disable accounts, • Password changes, resets, challenge response questions changes, • Synchronization events, • Reconciliation events. Several reporting templates are provided for a BIRT report writer for use in an Eclipse designer. Organizations can also generate their own reports in BIRT with SQL. https://www.openiam.com/products/identity-manager/features/audit-compliance/
Interoperability Dimension: Structural IoP
LOST view: Technical view - application
Viewpoint: Interoperability Security viewpoint
Interoperability Saliency: The Audit Service ABB is salient for technical interoperability because it defines the elements of an information system which need to be traced, for example to assure traceability of user actions as stated in the EIF: "Public administrations should ensure that a 'data access and authorisation plan’ which determines who has access to what data and under what conditions, to ensure privacy. Unauthorised access and security breaches should be monitored and appropriate actions should be taken to prevent any recurrence of breaches"
Identifier: http://data.europa.eu/dr8/AuditApplicationService
ABB name: eira:AuditApplicationService
EIRA concept: eira:ArchitectureBuildingBlock
Last modification: 2024-01-28
Identifier: http://data.europa.eu/dr8/AuditApplicationService
Interoperability Layer: TechnicalApplication
|
|
eira:PURI | http://data.europa.eu/dr8/AuditApplicationService |
dct:type | eira:AuditApplicationService |
dct:modified | 2024-01-28 |
eira:synonym | |
skos:definition | Audit ABB is an Application Service that enables the implementation of comprehensive procedural services capable of receiving inputs from different building blocks to ensure their correct behaviour, security or compliance with standards, regulations and best practices. |
eira:definitionSource | Inspired in SIMPL |
eira:definitionSourceReference | https://digital-strategy.ec.europa.eu/en/news/simpl-cloud-edge-federations-and-data-spaces-made-simple |
skos:example | The following implementation is an example on how this specific Architecture Building Block (ABB) can be instantiated as a Solution Building Block (SBB): OpenIAM audit service - OpenIAM Auditing Service ensures that detailed information about events and activities associated with identities or resources are logged into a centralized repository and be tracked. It offers the following features: • Sign-on, Sign-off, • User: create, update, delete or disable accounts, • Role: create, update, delete or disable accounts, • Resource: create, update, delete or disable accounts, • Password changes, resets, challenge response questions changes, • Synchronization events, • Reconciliation events. Several reporting templates are provided for a BIRT report writer for use in an Eclipse designer. Organizations can also generate their own reports in BIRT with SQL. https://www.openiam.com/products/identity-manager/features/audit-compliance/ |
eira:iopSaliency | The Audit Service ABB is salient for technical interoperability because it defines the elements of an information system which need to be traced, for example to assure traceability of user actions as stated in the EIF: "Public administrations should ensure that a 'data access and authorisation plan’ which determines who has access to what data and under what conditions, to ensure privacy. Unauthorised access and security breaches should be monitored and appropriate actions should be taken to prevent any recurrence of breaches" |
skos:note | |
eira:concept | eira:ArchitectureBuildingBlock |
eira:iopDimension | Behavioral IoP |
eira:view | Technical view - application |
eira:viewpoint | Interoperability Security viewpoint |
eira:viewpoint | REST API viewpoint |
dct:identifier | http://data.europa.eu/dr8/AuditApplicationService |
eira:eifLayer | TechnicalApplication |