2010 user forum eostar security thu schoenberg sean berens

14
2010 USER FORUM eoStar Security Thu Schoenberg Sean Berens

Upload: melina-nelson

Post on 03-Jan-2016

224 views

Category:

Documents


0 download

TRANSCRIPT

Page 1: 2010 USER FORUM eoStar Security Thu Schoenberg Sean Berens

2010 USER FORUMeoStar Security

Thu SchoenbergSean Berens

Page 2: 2010 USER FORUM eoStar Security Thu Schoenberg Sean Berens

Topics

• Audit Logs• Mobile Device Session Logs• User Passwords• Reporting • Report Automation

Page 3: 2010 USER FORUM eoStar Security Thu Schoenberg Sean Berens

Audit Logs

What are Audit Logs?– Audit Logs = Alogs

• AlogCustomers, AlogBrands, AlogItems, etc.– Audit Logs are tables that are used to track changes to

records– Audit Log tables can be used for reporting purposes

Design contributions for Audit Logs?– Andrews Distributing– J.J. Taylor Companies– Summit Beverage

Page 4: 2010 USER FORUM eoStar Security Thu Schoenberg Sean Berens

Audit LogsWhat do we track?– Primary record changes on 133 Tables• Field that was changed• New and prior values• Employee performing the change• Date/Time change was made

Page 5: 2010 USER FORUM eoStar Security Thu Schoenberg Sean Berens

Audit LogsWhat do we partially track?– Partial Tracking• Tracking data changes w/o employee

– Data changed via SQL Trigger(s)

• Tracking date/time changes w/o prior data or employee– Data stored in SQL Blobs and/or updated via SQL Trigger(s)

Page 6: 2010 USER FORUM eoStar Security Thu Schoenberg Sean Berens

Audit LogsWhat we currently don’t’ track?– Data who's RecNid lives outside the primary table– Examples:• Customer’s product set payment terms• Customer’s contacts• Product Alt-packs• Warehouse substitutions

Page 7: 2010 USER FORUM eoStar Security Thu Schoenberg Sean Berens

Audit Logs – Wiki Forum

Page 8: 2010 USER FORUM eoStar Security Thu Schoenberg Sean Berens

Mobile Device Session Logs

What are Mobile Device Session Logs?– Logs collected on mobile devices throughout the

work day– What type of tracking is available?• Session logs

– Explicit (step-by-step) actions performed on mobile devices– Visible on handheld, tablet, and eoStar client

• Route Analyzer– Customer based actions performed on mobile devices

• Daily Delivery Stop Analysis– Back office analysis of employee deliveries/pre-sells

Page 9: 2010 USER FORUM eoStar Security Thu Schoenberg Sean Berens

Mobile Device Session Logs

What mobile events do we track?

Page 10: 2010 USER FORUM eoStar Security Thu Schoenberg Sean Berens

Mobile Device Session Logs

What mobile events we don’t track– Changes to connection information– Viewing standard and qualified promotions– Retrieving and viewing goals– Taking UX surveys

Page 11: 2010 USER FORUM eoStar Security Thu Schoenberg Sean Berens

User Passwords

Types of User passwords– Connecting to the eoStar database• Integrated Security (Windows)• SQL

– Logging into the eoStar client application• User Logins

– Clearing user passwords within eoStar

• Handheld passwords– Viewing and changing passwords within eoStar– SQL Script(s) to bulk change passwords

Page 12: 2010 USER FORUM eoStar Security Thu Schoenberg Sean Berens

ReportingWhere is the data?– Audit Logs

• “dbo.Alog” + TableName (i.e. dbo.AlogCustomers, dbo.AlogItems)

– Mobile Device Session Logs – Session Logs• dbo.Sessions.SessionNid <-> dbo.HandheldLog.SessionNid

– Mobile Device Session Logs – Route Analyzer• dbo.Sessions.SessionNid <-> dbo.RouteAnalyzerEvents.SessionNid

Page 13: 2010 USER FORUM eoStar Security Thu Schoenberg Sean Berens

Report Automation

What is Report Automation?– The ability to schedule Ion, DX, & SQL Reports

How do I automate my reports?– eoStar Scheduler• Automated reports can be useful for auditing and

notification purposes• For more in depth coverage of the eoStar Scheduler

visit the “Ion in Action” forum tomorrow.

Page 14: 2010 USER FORUM eoStar Security Thu Schoenberg Sean Berens

Discuss | Ask | Suggest

• Thu [email protected]

• Sean [email protected]

Discussions online at www.wiki-eostar.com