<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Audit a user logins on Linux server in Operating System - Linux</title>
    <link>https://community.hpe.com/t5/operating-system-linux/audit-a-user-logins-on-linux-server/m-p/7105844#M55262</link>
    <description>&lt;P&gt;You have to enable auditing&amp;nbsp;&lt;/P&gt;&lt;P&gt;# vim /etc/audit/rules.d/audit.rules - mention your rules here&lt;/P&gt;&lt;P&gt;# systemctl restart auditd.service - start the service&lt;/P&gt;&lt;P&gt;# cat /var/log/audit/audit.log - logs location will be here&lt;/P&gt;</description>
    <pubDate>Wed, 21 Oct 2020 18:37:08 GMT</pubDate>
    <dc:creator>avd437</dc:creator>
    <dc:date>2020-10-21T18:37:08Z</dc:date>
    <item>
      <title>Audit a user logins on Linux server</title>
      <link>https://community.hpe.com/t5/operating-system-linux/audit-a-user-logins-on-linux-server/m-p/7105579#M55261</link>
      <description>&lt;P&gt;If I wanted to keep track of a user's logins and also what directories he/she has gone through, what steps should I go through for this purpose?&lt;/P&gt;&lt;P&gt;My understanding is all activites can be stored in "messages" file, and I just need to somehow enabled log configurations.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks!&lt;/P&gt;</description>
      <pubDate>Tue, 20 Oct 2020 11:53:46 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-linux/audit-a-user-logins-on-linux-server/m-p/7105579#M55261</guid>
      <dc:creator>Hanry Zhou</dc:creator>
      <dc:date>2020-10-20T11:53:46Z</dc:date>
    </item>
    <item>
      <title>Re: Audit a user logins on Linux server</title>
      <link>https://community.hpe.com/t5/operating-system-linux/audit-a-user-logins-on-linux-server/m-p/7105844#M55262</link>
      <description>&lt;P&gt;You have to enable auditing&amp;nbsp;&lt;/P&gt;&lt;P&gt;# vim /etc/audit/rules.d/audit.rules - mention your rules here&lt;/P&gt;&lt;P&gt;# systemctl restart auditd.service - start the service&lt;/P&gt;&lt;P&gt;# cat /var/log/audit/audit.log - logs location will be here&lt;/P&gt;</description>
      <pubDate>Wed, 21 Oct 2020 18:37:08 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-linux/audit-a-user-logins-on-linux-server/m-p/7105844#M55262</guid>
      <dc:creator>avd437</dc:creator>
      <dc:date>2020-10-21T18:37:08Z</dc:date>
    </item>
  </channel>
</rss>

