December 2017
Intermediate to advanced
410 pages
11h 5m
English
With the help of auditd, we can track activities related to any file within our system. We can track all attempts to read, write, execute, and permit changes in the files.
If a user tries to access an important file for which he didn't have permission and got the permission denied, we can track that as well. This is interesting, isn't it?
Let's look into a scenario and see how we can get an alert for the same:
Read now
Unlock full access