commands in hex vs ASCII

Burn Alting burn at swtf.dyndns.org
Tue Oct 4 21:16:05 UTC 2016


Kevin,

Have you thought of locally processing the logs using ausearch -i (which
does the conversion you want) and then transmitting the locally
interpreted logs to your SIEM?

On Tue, 2016-10-04 at 10:13 -0400, Kevin Brown wrote:
> Thanks for the responses so far
> 





More information about the Linux-audit mailing list