Security Auditd Config for Enterprises

Rohit Nambiar cola.vn at gmail.com
Fri Sep 4 13:38:33 UTC 2020


Hi all!

Apologies if this topic has already been discussed before, I couldn't find
an easy way to sift through older archives.

Is there an auditd rule set which offers a reasonable level of security
visibility and has been tested on enterprise production systems? And if
such a rule set can be shared here?

I'm looking for a base document to deploy/modify for use within my
organization. Many thanks in advance.

Regards
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://listman.redhat.com/archives/linux-audit/attachments/20200904/69e5d601/attachment.htm>


More information about the Linux-audit mailing list