25 year old aspiring finance major and self-proclaimed geek.
Formerly Subversity.net
I'd like to gather some suggestions for a basic auditctl ruleset that people can use as a baseline. For example, "Watch the password, shadow, and group files; Watch executions performed from /tmp; etc."
Any suggestions?
Comments 0 Comments