Audit Component

DESCRIPTION:
Implements the functionality of providing support for the principle of accountability, which is holding users of a system accountable for their actions within the system, and detection of policy violations. The audit policy defines the elements of an information system which need to be traced, for example to assure traceability of actions: what, how, when, where and with what.

Based on The Open Group
http://www.opengroup.org/security/das/xdas_int.htm

INTEROPERABILITY SALIENCY:
IoP Dimension: Structural IoP
The Audit Component ABB  is salient for technical interoperability because it allows the implementation of audit policies as stated in the EIF: "Public administrations should ensure that a 'data access and authorisation plan’ which determines who has access to what data and under what conditions, to ensure privacy. Unauthorised access and security breaches should be monitored and appropriate actions should be taken to prevent any recurrence of breaches"

EXAMPLES:
The following implementation is an example on how this specific Architecture Building Block (ABB) can be instantiated as a Solution Building Block (SBB):

Activiti audit feature
The audit feature of Activiti archives all process instances, activity instances, keeps variable values continuously in sync and all form properties that are submitted so that all user interaction through forms is traceable and can be audited.
Authenticated users who submitted the forms are accessible in the history as well as for start forms and task forms.
https://www.activiti.org/userguide/#historyFormAuditPurposes

Attributes:
- ID: Internal key used to identify an architecture building block
- dct:type: The type of the architecture building block
- dct:publisher: The name of the individual or organisation that is documenting the current building block
- dct:modified: The date that the information documented for this building block was last modified
- eira:status: The development or realisation status of this building block
- eira:data_quality_level
- eira:data_quality_score: Overall data quality score
- eira:reusability_level
- eira:reusability_score
- eira:iop_level
- eira:iop_score
- eira:actual_reuse: Specifies if the solution is currently being reused
- eira:view

Related terms