I want to improve the logging on our CentOS boxes.
Anybody got a good config for auditd and OSSEC at they can share?
Also is there any other stuff I should turn on?
Timestamps in History?
Writing on history as a command is run?
[link][12 comments]
I want to improve the logging on our CentOS boxes.
Anybody got a good config for auditd and OSSEC at they can share?
Also is there any other stuff I should turn on?
Timestamps in History?
Writing on history as a command is run?