# # This file is MANAGED BY PUPPET, DO NOT TOUCH # # # This file controls the configuration of the audit daemon # log_file = /var/log/audit/.empty_audit.log # We send them to syslog instead log_format = NOLOG log_group = root priority_boost = 4 flush = INCREMENTAL freq = 20 num_logs = 5 disp_qos = lossy dispatcher = /sbin/audispd name_format = NONE ##name = mydomain max_log_file = 5 max_log_file_action = ROTATE space_left = 125 space_left_action = email action_mail_acct = root admin_space_left = 75 admin_space_left_action = SUSPEND disk_full_action = SUSPEND disk_error_action = SUSPEND ##tcp_listen_port = tcp_listen_queue = 5 ##tcp_client_ports = 1024-65535 tcp_client_max_idle = 0 enable_krb5 = no krb5_principal = auditd ##krb5_key_file = /etc/audit/audit.key