Is there a method for collect all selinux logs and create a graph??

David Cafaro dac at cafaro.net
Tue Sep 16 20:40:59 UTC 2014


You can tell audisp (
http://man7.org/linux/man-pages/man8/audispd.8.html ) to send all audit
messages to syslog and then use a centralized syslog system to collect
your logs into a central repository.  At that point you can use your
favorite log parsing tools to review your SELinux audit messages (not to
mention other items) at will.

Cheers,
David


On 09/16/2014 05:28 AM, Maurizio Pagani wrote:
> Hi everybody.
>
> I'll want configure SELinux in 1000+ Systems, but i need to know, if
> there is a method or product that collect all logs of SELinux and
> create a mirror of what are happening in the systems.
>
> An example is snorby for suricata or snort (IDS/IPS):
> http://www.rivy.org/wp-content/uploads/2013/03/snorby-screenshot.png
>
> Let me know.
>
> Thanks in advance.
>
> Maurizio Pagani
>
>
> --
> selinux mailing list
> selinux at lists.fedoraproject.org
> https://admin.fedoraproject.org/mailman/listinfo/selinux

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.fedoraproject.org/pipermail/selinux/attachments/20140916/bd1f58b7/attachment.html>


More information about the selinux mailing list