Re: How can I get an alert if someone views or changes syslog.

From: Bill Marcum (bmarcum_at_iglou.com.urgent)
Date: 12/14/04


Date: Tue, 14 Dec 2004 13:08:16 -0500

On 14 Dec 2004 08:51:59 -0800, Liam
  <liamhearne@hotmail.com> wrote:
> I need to be able to identify if an individual views, changes or tries
> to delete the syslog on an AIX or Solaris server.
>
> Is there anything freeware available to monitor & alert, or monitor &
> call something else (Tivoli) to alert.
>
> I know we could pick up on changes to the file, but I can't find
> anything that spots someome viewing it..
>
> Liam

Can't you just change the permissions so only a certain group can read
the log? Use an ACL if the OS and file system allow that?

-- 
cowsay -b "Prepare to be assimoolated! "


Relevant Pages

  • Re: Newbie on AIX
    ... To me, AIX logical volume management, now going on 11 years old is the ... it was the first time I did a chfs command to add more file system space ... volumes (usually individual hard disks). ... Free PPs is free partitions - free space more or less, ...
    (comp.unix.aix)
  • Re: File greater than 2 GB
    ... but AIX 4.3.3 doesn't support such change (in mounted our umounted ... Which can be done on the fly if the filesystem is not being used. ... > Configure or verify that the file system supports large files using ... > the way Oracle has implemented its file opens. ...
    (AIX-L)
  • Re: Max disks on a system
    ... p143 of the AIX 5L Differences Guide AIX 5.3 Version ... inodes required of the file system depends on the types of devices on ... will result in four AIX devices for each disk. ... One inode is allocated for every KB in the RAM file system. ...
    (comp.unix.aix)
  • Re: Script 101
    ... You did not mention whether you are on a specific revision of AIX, ... You may need to make use of the rsh and rmuser commands. ... there is a feature to adjust the file system size using "chfs ... up their mind how to measure what exactly is ADEQUATE paging space. ...
    (comp.unix.aix)
  • Re: Mount AIX partition on linux
    ... don't forgot create aix folder under /mnt and -t it means file system type. ... The following link is man page for mount command under Linux and it will ...
    (RedHat)