16.01.2013 Views

Microsoft Sharepoint Products and Technologies Resource Kit eBook

Microsoft Sharepoint Products and Technologies Resource Kit eBook

Microsoft Sharepoint Products and Technologies Resource Kit eBook

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

666 Part VII: Information Management in SharePoint <strong>Products</strong> <strong>and</strong> <strong>Technologies</strong><br />

Administrative Policies<br />

In many organizations, we often find that there is poor communication between the<br />

human resources department <strong>and</strong> the system administration people. Reasons for this<br />

vary from company to company, but it is common for the system administrators to<br />

be some of the last people to learn that a person has changed departments or has<br />

left the company.<br />

In SharePoint Portal Server 2003, when a user account is deleted in Active Directory,<br />

that deletion is not implemented in the user profile database in SharePoint Portal<br />

Server 2003. Even though the account is marked for deletion in the user profile database,<br />

those accounts must still be deleted manually by a SharePoint administrator.<br />

If you need to remove a user’s profile from the user profile database before it<br />

is removed through a full import, you will need to propagate policies to this effect.<br />

In this domain area, here are some issues to consider:<br />

■ Worker status changes are sent to System Administrators in a timely fashion.<br />

■ Users must inform System Administrators about changes in status.<br />

■ Transfer of ownership of information after user leaves company.<br />

■ Schedule of file deletion after user leaves company.<br />

■ User notifications need to be cleaned up by the SharePoint Administrator.<br />

Logging Events<br />

One of the ways to troubleshoot any system is to have a robust logging system in<br />

place that can help you troubleshoot problems should they arise. One area to log for<br />

SharePoint <strong>Products</strong> <strong>and</strong> <strong>Technologies</strong> is the Internet Information Services (IIS) platform.<br />

Because all of the client calls will come through IIS to the Windows SharePoint<br />

Services filter, you can capture who is connecting, when they are connecting, <strong>and</strong><br />

which pages they are requesting. In addition, you can purchase third-party software<br />

that will give you more vigorous reporting capabilities.<br />

Logging is also a security concern because you can track attack vectors that<br />

hackers might use to compromise your system. A robust logging system is essential<br />

for good security, <strong>and</strong> those logging policies to be considered that relate to Share-<br />

Point <strong>Products</strong> <strong>and</strong> <strong>Technologies</strong> include the following:<br />

■ Logs are required for all application systems that host sensitive information.<br />

■ Logs must support auditing requirements.<br />

■ Logs must provide accountability <strong>and</strong> traceability during an audit.<br />

■ Content of SharePoint <strong>Products</strong> <strong>and</strong> <strong>Technologies</strong> logs must include specified<br />

information.

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!