audit policy generating scripts

Nicholas Nachefski nnachefski at gmail.com
Mon Nov 2 17:04:41 UTC 2009


I wrote a short audit policy generating script in python.  This script
inspects an auditd-enabled system and then writes a policy to watch certain
files and syscalls.  It helps me create a baseline to start with.

The script is attached......
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://listman.redhat.com/archives/linux-audit/attachments/20091102/0adf5881/attachment.htm>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: audit_policy.py
Type: application/octet-stream
Size: 8425 bytes
Desc: not available
URL: <http://listman.redhat.com/archives/linux-audit/attachments/20091102/0adf5881/attachment.obj>


More information about the Linux-audit mailing list