Identity & Access
Accounting (AAA)
Also known as: Auditing, Audit logging
Definition
The third pillar of the AAA framework: recording what an authenticated identity did, when, from where and to which resources, for audit and billing purposes.
Examples
- RADIUS accounting records for VPN session start, stop and total bytes used.
- Cloud audit logs that capture every API call with caller identity and source IP.
Related terms
AAA Framework
A foundational access-control model built on three layered functions: Authentication, Authorization and Accounting.
Authentication
The process of verifying that an entity — user, device or service — really is who or what it claims to be before granting access.
Authorization
The process of deciding what an already-authenticated identity is allowed to do — which resources, actions and conditions are permitted.
RADIUS
RADIUS — definition coming soon.
TACACS+
TACACS+ — definition coming soon.
SIEM
A platform that aggregates, normalizes and correlates security telemetry from across the enterprise to enable detection, investigation, compliance and reporting.