°Ô½Ã¹° 259°Ç
   
[Redhat6.5] audit
±Û¾´ÀÌ : theko ³¯Â¥ : 2014-08-21 (¸ñ) 17:41 Á¶È¸ : 1757

audit  Àû¿ë¹ý

# vi /etc/audit/audit.rules
¸Ç ¾Æ·¡ ´ÙÀ½ ¶óÀÎ Ãß°¡
-a entry,always -F arch=b64 -F uid=0 -S execve 
-w /sbin/reboot
-w /sbin/shutdown
-w /sbin/init 

ÀúÀå ÈÄ  
# chkconfig auditd on
# service auditd restart 


À̸§ Æнº¿öµå
ºñ¹Ð±Û (üũÇÏ¸é ±Û¾´À̸¸ ³»¿ëÀ» È®ÀÎÇÒ ¼ö ÀÖ½À´Ï´Ù.)
¿ÞÂÊÀÇ ±ÛÀÚ¸¦ ÀÔ·ÂÇϼ¼¿ä.
   

miwit.com sir.co.kr DNS Powered by DNSEver.com DNS Powered by DNSEver.com