mod_log_forensic:
Ben Laurie's improvement to Apache logging. The
module writes each request (including headers) to a log file before
request processing begins, including a unique request ID. After request
processing is completed, the unique ID is again logged to the log file.
If a security issue is exploited on a server running mod_log_forensic,
crashing a child process, the log can then be used to discover exactly
what request was used in the exploit, allowing further investigation.
Auditing
in the Solaris 8 Operating Environment -- This isn't strictly related
to configuring Solaris syslog. This document explains how to configure
the Solaris Basic Security Module, which among other things allows one
to get useful user accounting data.