[logs] How to log - commands and file access
Vincent Bernat
bernat at luffy.cx
Fri Nov 9 11:38:19 PST 2007
OoO En cette matinée ensoleillée du vendredi 09 novembre 2007, vers
09:25, david.bigot at devoteam.com disait:
> Hello,
> I want to known for a customer, how to log automatically on UNIX and Linux
> system :
> - all commands executed (in BASH, ZSH & co ...). I know but the file ~/.(ba)
> sh_history but I prefer a global file or through syslog.
> - all file access by process and username in real-time (not static) or if it's
> not possible, which process and username access to some files (or directory)
> like /etc/shadow, /data/ ...
You can look at something like syscalltrack.
--
I NO LONGER WANT MY MTV
I NO LONGER WANT MY MTV
I NO LONGER WANT MY MTV
-+- Bart Simpson on chalkboard in episode 3G02
More information about the LogAnalysis
mailing list