I wrote a short audit policy generating script in python.  This script
inspects an auditd-enabled system and then writes a policy to watch certain
files and syscalls.  It helps me create a baseline to start with.

The script is attached......

Attachment: audit_policy.py
Description: Binary data

--
Linux-audit mailing list
[email protected]
https://www.redhat.com/mailman/listinfo/linux-audit

Reply via email to