Unsolved
4 Posts
0
358
October 15th, 2021 13:00
Avamar 19.4 Command Logging
Good afternoon,
I have a question regarding the auditd service, and command logging. I was reading through the 19.4 Product Security Guide, and under the Command Logging section, it says this "The base SLES operating system logs all Bash shell commands issued by any user."
Is it possible to have these logs set to our SIEM tool? Or would I have to configure auditd rules to 1) log the commands that a user does through the CLI and 2) push these logs to our SIEM?
Any help would be greatly appreciated, thank you for your time!
No Events found!