IT Audit Factory · Evidence-first audit operationsFree · Professional · MSP
Documentation

Storage and TrueNAS

Storage-management targets, access prerequisites and platform-specific evidence limitations.

MSP4.1.0
All documentation / MSP / 4.1.0
This reference is bundled with the 4.1.0 engine and may retain earlier UI terminology. Use the current 4.1.0 installation/security guides for the new wizard and activation steps. Its procedures apply to MSP; use the separate Free or Professional guide for those editions.

Use the approved 4.1.0 installer for your edition and confirm the version shown in the installed application. Published package availability is shown in Downloads & beta access.

Storage & TrueNAS Guide

TrueNAS authentication, API key only mode, TLS policy, SSH, and evidence semantics
ITAuditFactory ISO 27001 Audit Toolkit 4.1.0

Authentication choices

ModeITAuditFactory requires
API key onlyManagement address + encrypted API key. API-key owner/account is optional evidence metadata and is not required for authentication.
Username + passwordService account or root username and encrypted password where the appliance permits it.
SSH service account + key/agentSSH username and key/agent configuration; passwords are never placed on native SSH command lines.

Legacy compatibility

Saved profiles labeled Service account + API key or REST API token remain compatible aliases for API-key authentication.

TLS

Strict certificate validation is the default. A per-device Allow untrusted/private TLS certificate for read-only collection only exception can permit evidence collection, but the certificate problem remains a warning/Needs Review; the exception never converts certificate health to PASS.

TrueNAS protocol note

The collector must report protocol/API availability as evidence. If the configured TrueNAS release does not support a requested endpoint, report NO_DATA/collection limitation rather than fabricating PASS/FAIL.

Troubleshooting

Use Live Audit Status to confirm worker start, Storage profile load, authentication mode, endpoint attempt, and returned error. Re-save the encrypted secret if the handoff cannot be opened under the current Windows user.