Mondoo Docs

auditd

auditd MQL resource for querying Operating System infrastructure with cnquery and cnspec.

Operating System

Use MQL in cnspec shell or policy:

auditd

Relationships

Mini Map
Operating System
4 resources · 3 relationshipsClick to select, expand fields to see properties.

Fields (3)

FieldTypeDescription
config
auditd.configauditd (Linux Audit Daemon) configuration
ruleprivate
auditd.ruleauditd (Linux Audit Daemon) rule
rules
auditd.rulesauditd (Linux Audit Daemon) rules aggregated on disk

Field Details

rulesauditd.rules

via /etc/audit/audit.rules by default