HIDS 5402

From Atomicorp Wiki
Revision as of 15:07, 18 December 2011 by Mshinn (Talk | contribs)

Jump to: navigation, search

Example log message:

Server sudo: tortix : TTY=unknown ; PWD=/var/asl/www ; USER=root ; COMMAND=/var/asl/bin/asl --validate_gui

Explanation:

This means that a user or process successfully used [sudo] to execute a command as root.

Notes:

Careful analysis of sudo logs is recommended to ensure that users authorized to run root level commands, via sudo, are not exceeding their authority.

Personal tools