From e4bd0c5d4c44f6359b3f8621a5e0c41b74255f0d Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?=D0=90=D1=80=D1=82=D0=B5=D0=BC=D0=B8=D0=B9?= Date: Sun, 20 Jun 2021 15:31:08 +0300 Subject: [PATCH] Final --- DESTDIR/etc/audit/auditd.conf | 4 ++-- DESTDIR/var/lib/linux-infosec-setupper/audit/auditd-conf.sh | 4 ++-- front_auditd.sh | 2 +- 3 files changed, 5 insertions(+), 5 deletions(-) diff --git a/DESTDIR/etc/audit/auditd.conf b/DESTDIR/etc/audit/auditd.conf index 2e41fcd..4544353 100644 --- a/DESTDIR/etc/audit/auditd.conf +++ b/DESTDIR/etc/audit/auditd.conf @@ -2,9 +2,9 @@ local_events = yes log_file = . write_logs = yes -log_format = RAW +log_format = ENRICHED log_group = root -priority_boost = 6 +priority_boost = 4 flush = incremental_async freq = 0 max_log_fileaction = rotate diff --git a/DESTDIR/var/lib/linux-infosec-setupper/audit/auditd-conf.sh b/DESTDIR/var/lib/linux-infosec-setupper/audit/auditd-conf.sh index ca1158f..47d3c36 100644 --- a/DESTDIR/var/lib/linux-infosec-setupper/audit/auditd-conf.sh +++ b/DESTDIR/var/lib/linux-infosec-setupper/audit/auditd-conf.sh @@ -2,9 +2,9 @@ local_events="yes" log_file="." write_logs="yes" -log_format="RAW" +log_format="ENRICHED" log_group="root" -priority_boost="6" +priority_boost="4" flush="incremental_async" freq="0" max_log_fileaction="rotate" diff --git a/front_auditd.sh b/front_auditd.sh index e4e4bc5..9100734 100644 --- a/front_auditd.sh +++ b/front_auditd.sh @@ -12,7 +12,7 @@ else source "${SHARE_DIR_AUDIT}/back_auditd.sh" fi -if ! [ -f "${VAR_DIR_AUDIT}/auditd-conf.sh}" ]; then +if [ ! -f "${VAR_DIR_AUDIT}/auditd-conf.sh" ]; then _mk_auditd_config || { _yad_error $"Unable to read file %s" "${VAR_DIR_AUDIT}/auditd-conf.sh"; exit 1; } fi