auditreduce — Merge and Select Audit Records from Audit Trail Files

Synopsis

/usr/sbin/auditreduce [options][audit-trail-file...]

Description

Use the auditreduce command to choose sets of records to examine. For example, you can select all records from the past 24 hours to generate a daily report; you can select all records generated by a specific user to examine that user's activities; or you can select all records resulting from a specific event type to see how often that type occurs. Use auditreduce to merge audit records from one or more input audit files or to perform a postselection of audit records.

Audit records from one or more input audit trail files are merged into a single output file. The records in an audit trail file are assumed ...

Get Solaris™ 8 System Administrator's Reference now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.