To set up basic security event auditing:
Enable auditing as described in Enabling Audit.
In the Enable Audit Events group, switch to
By
Category view and check the
Security category to enable all security
events.
Enable local storage as described in Using Local Storage. Set retention to the number of days required by your security policy.
Click .
For a compliance-ready audit configuration with tamper protection:
Enable auditing and enable all event categories by checking each top-level category in the By Category view.
Enable local storage with retention set to 0
(infinite) or the number of days required by your compliance
framework.
Configure local Git tracking as described in Using Git Tracking to maintain a detailed commit history of configuration changes.
Lock the configuration by checking Lock configuration.
Enable permanent lock by clicking to prevent the configuration from being unlocked. See the warning in Enabling Permanent Lock before proceeding.
Click .
To track configuration changes with version history:
Enable auditing as described in Enabling Audit.
In the By
Category view, check the
Configuration category.
Configure Git tracking as described in Using Git Tracking to track change commits locally.
Click .