ATM_ID: 81D6FFAC-65F7-11E7-9434-A3C6D30A4651 MFF: PLANNEDTIMESTAFF: ID: DPQA_Regression_Accounting/Testcases/FS_50.001_Audit_Log/97053 TESTCASE_HEADLINE: To check the auditlog shall capture an event if the device users with SA rights logged-in in CWIS and assigning/removing LDAP Groups to Logged-in user role/junior administrator permission roles when "Assign Group LDAP" method is turned on. GROUP: FEATURE: SUB_FEATURE: INPUT:

1.Make sure the device upgraded with latest D3.5 build.
2.The device WebUI should be functional.
3.Make sure the Login-methods should be set as 'User Name / Password Validate on the Network' and user permissions method should be set as "Remotely on the Network using LDAP".
4.Make sure LDAP server should be configured in the device.
5.Make sure the more than one user permissions and Junior Administrator role should be created (Assumes an existing role has been created by a previous test).
6.Make sure the Device user with SA rights should be created.

PROCEDURE:

Scenario 1: (Logged-In User role)
1.Navigate to CWIS->Login as Device user with SA rights->Logged-In users->Click "Edit User Mappings" for an existing role to go to the "Manage Permission Role" screen.
2.Select "Assign Group LDAP" option and search the LDAP groups by entering the group name (enter first letter of the group) under the 'Fine/Add Groups' search box and pressing the 'Search for Groups' button it will list the groups after that press 'Add All' button to assign all groups to the role or else manually select the listed group one by one to assign the group to the role by pressing the 'Add' button and apply the changes.
3.Download the auditlog and unzip the auditfile.zip file to verify the event:144 captured in the main auditfile.txt.
4.Follow step 2 to assign maximum of 25 LDAP groups to the role and follow step 3 to verify the auditlog event.
5.Follow step 2 to assign all or selected LDAP groups to more than one role and follow the step 3 to verify the event.
Scenario 2: (Junior Administrator role)
6.Follow step 1 to go to CWIS->User permissions->Device Management->click "Edit User Mappings" for an existing role to go to the "Manage Permission Role" screen.
7.Follow step 2-6 to verify he events.
Scenario 3: (Remove)
8.Follow step 1 to go to CWIS->Logged-In users->Click "Edit User Mappings" for an existing role which has assigned LDAP group to that role to go to the "Manage Permission Role" screen.
9.Remove already assigned one or more groups from the role by pressing the 'Remove All' button and apply the changes
10.Follow step 3 to verify the event
11.Follow step 1 to go to CWIS->User permissions->Device Management->Click "Edit User Mappings" for an existing role which has assigned LDAP group to that role to go to the "Manage Permission Role" screen.
12.Follow step 9 and 10 to verify the auditlog events.

OUTPUT:

Scenario 1 and 2:
Auditfile.txt file should be captured separate entries for all the users added to that role with the below information
Event ID: 144
Event Description: User or Group Role
Assignment
Username
Device name
Device serial number
User or group name (assigned)
Role name
\ Action: added

Scenario 3:
Auditfile.txt file should be captured separate entries for all the users removed from the role with the below information
Event ID: 144
Event Description: User or Group Role
Assignment
Username
Device name
Device serial number
User or group name (assigned)
Role name
\ Action: removed

PROCESS: PRIORITY: TEST_TYPE: LOE: RESOURCE_HW: RESOURCE_CONSUMEABLES: RESOURCE_MEDIA: SKILL_SET: TEST_CASE_TYPE: TESTCASE_SOURCE: SPEC: FS 50.001 Audit Log FS 44.001 Authorization SPEC_VERSION: SPEC_TAG: [50.001.012](FT-14212) CCSFEAT21254 The audit log entry data shall report events contained in table 1 below: [44.001.029] (FT-14212) CCSFEAT11486 [D1.7-*] The SA shall be able to associate an existing local user to an existing role. [44.001.036] (FT-14212) CCSFEAT11483 [D1.7-*] The SA shall be able to remove a local user from a role. ATM_OWNER: APPROVE_QE: APPROVED_QE: APPROVE_SE: APPROVED_SE: APPROVE_SPAR: APPROVED_SPAR: ASSOCIATED_TESTCASES: TRAINING: TESTCASE_VERSION: TESTCASE_STATE: TESTCASE_PLATFORM: TESTCASE_PRODUCT: TESTCASE_APPROVALS: CDATE: 1499749936 MDATE: 1499749936 MUSER: q4BVX0J1 AUTHOR: q4BVX0J1 ATM_MCOMMENTS: Imported from spreadsheet HISTORY: ATM_LOCKED: ATM_REQLINK: 41932766-6EB0-1014-8BFC-B5D0591256B9, A9C97516-6E71-1014-8FF3-E5AD8A928663, A9D0C584-6E71-1014-A670-F8D75D74F702, 41DF8928-6EB0-1014-9B1E-BCE075128E91 ATM_REQCOUNT: 4 QA_TEAM: TC_WEIGHTAGE: FILENAME: FILEDESC: FILES: