IBM Security Guardium

 View Only
  • 1.  Redact action is not working .

    Posted Mon June 27, 2022 05:06 PM
    Hi all,

    I WANT to mask the  column "Card" content data type  NVARCHAR2(150) of credit card number whenever any user other then sys user try to capture the data of perticular column. It is oracle 19 os aix 7.2
    I have created  extrusion rule with redact action.

    ------------------------------
    ajay rawat
    ------------------------------


  • 2.  RE: Redact action is not working .

    Posted Tue June 28, 2022 12:49 AM
    Hi Ajay,

    Have you installed below parameter with S-TAP installation?

    STAP_FIREWALL_INSTALLED - 1

    Have you verified that the blocking is working?
    Check the regular expression you use in the redact policy and let us know.

    Thanks,
    Panendar Rao.C

    ------------------------------
    PHANENDRA RAO CHAVANA
    ------------------------------



  • 3.  RE: Redact action is not working .

    Posted Wed June 29, 2022 01:34 AM
    Hi,
    Yes,STAP_FIREWALL_INSTALLED - 1 is enable. I have tested the sample in  regex simulation it showing pass (green). 
    In access policy when i am configuring the action S-GATE terminate it is working fine.
    In extrustion rule when am setting full LOG FULL DETAILS action i am able to see the hit are comming for that rule. Whenever i execute command but when i am setting  S-TAP TERMINATE action  it is not working. 



    ------------------------------
    ajay rawat
    ------------------------------



  • 4.  RE: Redact action is not working .

    Posted Thu June 30, 2022 12:41 AM
    Hi Ajay Rawat,

    In the Extrusion Rule, Rule actions should be (Redact) for masking the data not S-TAP Terminate.

    Thanks,
    Panendar Rao.C

    ------------------------------
    PHANENDRA RAO CHAVANA
    ------------------------------



  • 5.  RE: Redact action is not working .

    Posted Fri July 01, 2022 04:24 PM
    Hi,

    As per your last mail, For testing purspose i had kept S-tap Terminate action, but it is not working. After setting Rule actions as Redact still it is not working.
    Kindly let us know we have to make given rule in session or access level. Also let us know if any other setting required. 

    Thanks,
    .......AR

    ------------------------------
    ajay rawat
    ------------------------------