[Date Prev][Date Next]   [Thread Prev][Thread Next]   [Thread Index] [Date Index] [Author Index]

Filter



Hi;

I need filter logs to terminal name(if tty/terminal equal none, write to audit.log).

Example: -a entry,always -S execve -F tty!=none

But, no use tty in filter parameter list. How this?

Thank You
Best Regards

[Date Prev][Date Next]   [Thread Prev][Thread Next]   [Thread Index] [Date Index] [Author Index]