Redian新闻
>
Unix下是否有记录所有用户command history的工具?
avatar
Unix下是否有记录所有用户command history的工具?# Security - 系统安全
z*q
1
There are usually history files under a user's home directory. But is there
away to log all user's commands reliably? That is, a user can't delete the
log, and the sysadmin can view all the commands executed by a user.
avatar
p*s
2

"accton" will turn on process logging.
Every process executed will be logged and can be analyzed.
However, as the logged data is so big, you need futuristic
data mining technology to see what has happened.

【在 z*q 的大作中提到】
: There are usually history files under a user's home directory. But is there
: away to log all user's commands reliably? That is, a user can't delete the
: log, and the sysadmin can view all the commands executed by a user.

avatar
m*r
3
由超级用户打开system log功能
所有用户的命令会被记载到/var/adm/log
不过用处不大,用户完全可以把他的某个恶意程序执行伪装成是在执行
普通操作,比如编辑什么程序

【在 p****s 的大作中提到】
:
: "accton" will turn on process logging.
: Every process executed will be logged and can be analyzed.
: However, as the logged data is so big, you need futuristic
: data mining technology to see what has happened.

相关阅读
logo
联系我们隐私协议©2024 redian.news
Redian新闻
Redian.news刊载任何文章,不代表同意其说法或描述,仅为提供更多信息,也不构成任何建议。文章信息的合法性及真实性由其作者负责,与Redian.news及其运营公司无关。欢迎投稿,如发现稿件侵权,或作者不愿在本网发表文章,请版权拥有者通知本网处理。