Is there any way to make pam_tty_audit log not only what the user types but also what the server sends back? Due to regulatory requirements We are currently having to use proprietary, kludgy, unreliable bastion host "solutions" to get full session logging. It seems like pam_tty_audit, being in the tty layer, would have access to everything going through the tty both send and receive but it looks like only commands typed are logged. Am I missing something?
Thanks! -- Tracy Reed
pgpOz1A2p87Bv.pgp
Description: PGP signature
-- Linux-audit mailing list [email protected] https://www.redhat.com/mailman/listinfo/linux-audit
