Package audit

User space tools for kernel auditing

http://people.redhat.com/sgrubb/audit/

The audit package contains the user space utilities for
storing and searching the audit records generated by
the audit subsystem in the Linux 2.6 and later kernels.
It includes example rules that you can use.

Version: 4.0.1

See also: audit-libs, audit-libs-devel, audit-rules.

File Formats

auditd-plugins realtime event receivers
auditd.conf audit daemon configuration file

System Administration

auditd The Linux Audit daemon
aulast a program similar to last
aulastlog a program similar to lastlog
aureport a tool that produces summary reports of audit daemon logs
ausearch a tool to query audit daemon logs
ausyscall a program that allows mapping syscall names and numbers