Auditing scenario
The following UCloud usage scenarios are used to manually verify that the complete auditing stack works. This is currently not machine tested.
Internal Auditing: #1 File Activity
There has been created a users on the production system to help with this test:
audit1
The person responsible for our logging architecture has the 2FA and other credentials to these users.
Steps:
- Create a directory called
Audit-$DATE - Upload a file called
file.txtto the new directory - Check if other user can see the file (copy URL to of file location to other users browser)
- Copy this file to the same directory using the rename strategy (default)
- Move the new copy to the trash
- Rename
filetorenamed - Mark
renamedas a favorite file - Unmark
renamedas a favorite file
Internal Auditing: #2 Project Activity
This Audit requires 3 different users. There has been created additional 2 users on the production system to help with this test:
audit2audit3
The person responsible for our logging architecture has the 2FA and other credentials to these users.
Steps:
audit1applies for a project called AUDITTEST-$DATE which is approvedaudit1invitesaudit2audit2accepts the inviteaudit1upgradesaudit2to adminaudit2invitesaudit3to the projectaudit3accepts the inviteaudit3uploads a file to his personal workspace called file.txtaudit3classifies the file as Sensitiveaudit2creates a group with audit3 in itaudit2creates a drive in the project with read permissions to the new groupaudit3attempts to move file to read only folder and failsaudit2changes permissions to writeaudit3moves the file to new drive in the project
UCloud