IT Audit Factory · Evidence-first audit operationsFree · Professional · MSP
Archived guide — original release identity

This guide describes a previous release. Use the current 4.1.0 documentation for new installations.

Documentation

Storage and TrueNAS

Storage-management targets, access prerequisites and platform-specific evidence limitations.

MSPR68 bundled reference
All documentation / MSP / R68 bundled reference
This reference is bundled with the R68 engine and may retain earlier UI terminology. Use the current R68 installation/security guides for the new wizard and activation steps. Its procedures apply to MSP; use the separate Free or Professional guide for those editions.

Storage & TrueNAS Guide

TrueNAS authentication, API key only mode, TLS policy, SSH, and evidence semantics
ITAuditFactory ISO 27001 Audit Toolkit 2.0.0-RC65

Authentication choices

ModeITAuditFactory requires
API key onlyManagement address + encrypted API key. API-key owner/account is optional evidence metadata and is not required for authentication.
Username + passwordService account or root username and encrypted password where the appliance permits it.
SSH service account + key/agentSSH username and key/agent configuration; passwords are never placed on native SSH command lines.

Legacy compatibility

Saved profiles labeled Service account + API key or REST API token remain compatible aliases for API-key authentication.

TLS

Strict certificate validation is the default. A per-device Allow untrusted/private TLS certificate for read-only collection only exception can permit evidence collection, but the certificate problem remains a warning/Needs Review; the exception never converts certificate health to PASS.

TrueNAS protocol note

The collector must report protocol/API availability as evidence. If the configured TrueNAS release does not support a requested endpoint, report NO_DATA/collection limitation rather than fabricating PASS/FAIL.

Troubleshooting

Use Live Audit Status to confirm worker start, Storage profile load, authentication mode, endpoint attempt, and returned error. Re-save the encrypted secret if the handoff cannot be opened under the current Windows user.

Guide basis

R68 package: Storage-TrueNAS-Guide.html

Published as a website guide on 1 October 2026. Where a bundled reference is older, the version-specific guide and installed interface take precedence.