Guardium organizes the data it collects into a set of domains. Each domain contains a different type of information relating to a specific area of concern: data access, exceptions, policy violations, and so forth. All domains and their contents are described in the Domains, Entities, and Attributes appendix.
There is a separate query builder for each domain, and access to each query builder is controlled via security roles.
Regardless of the domain, the same general-purpose query-builder tool is used to create all queries. For detailed instructions on how to build queries, see Queries, below.
In addition to the standard set of domains, users can define custom domains to contain information that can be uploaded to the Guardium appliance. For example, your company might have a table relating generic database user names (hr23455 or qa4872, for example) to real persons (Paula Smith, John Doe). Once that table has been uploaded, the real names can be displayed on Guardium reports, from the custom domain. For more detailed information on how to define and use custom domains, see External Data Connector.