suex icon indicating copy to clipboard operation
suex copied to clipboard

Auditing is missing

Open odedlaz opened this issue 7 years ago • 0 comments

suex is missing an audit feature that'll give sysadmins insights into suex usage. For example:

  • User was denied execution
  • User tried to run a specific command many times during a specific timeframe
  • User edited the configuration file

I believe that this information can be sent using rsyslog.

Things to point out:

  • This file can be read by anyone, but only the root user can edit it
  • Default configuration is important in this case

odedlaz avatar Oct 22 '17 06:10 odedlaz