Q: auditd output analysis?

From: Craig Makin <Craig_Makin.DOLA_at_notes.dola.wa.gov.au>
Date: 4 Dec 96 14:42:51

G'day Sysadmin'ers

We currently have 2 alphas running V3.2D-1 with enhanced C2 security enabled.
"auditd" is running and creating lots of output (std options via audit_setup).
Our
security administrator tried using the tool to analyse this output and wasn't
impressed (to put it politely).

Q: Are there any tools for analysing and reporting auditd information

Q: Any recommended suggestions of "calls" to be ignored etc?

Is there a whitepaper somewhere ??

     Ta,
      Craig Makin
      Ferntree Computer Corp.
Received on Wed Dec 04 1996 - 07:59:13 NZDT

This archive was generated by hypermail 2.4.0 : Wed Nov 08 2023 - 11:53:47 NZDT