I was playing around and wanted to know if there is plans to allow audit rule filters by TTY, or specifically filter when tty != (none) (i.e. interactive login events).
-- Linux-audit mailing list [email protected] https://www.redhat.com/mailman/listinfo/linux-audit
