On a mailing list someone asked this and didn't get much reponse so thought I'd post the question here. Thanks.
Can anyone recommend the most secure way to go about this on a Linux system? Log each and every command including alias expansion, builtins etc. to syslog?
[link][10 comments]