diff options
author | Christian Breunig <christian@breunig.cc> | 2024-04-23 17:54:26 +0200 |
---|---|---|
committer | GitHub <noreply@github.com> | 2024-04-23 17:54:26 +0200 |
commit | 5486417ab6761eabc621373100d79d04e70e311a (patch) | |
tree | 40d02944634656f24743b39d47299d9d5889a0c3 | |
parent | f3c36e2d1cb7f853854c97d4d156e8604c4d4309 (diff) | |
parent | 7164ad40f5cc47f35c7903626d4d4da048a25113 (diff) | |
download | vyos-1x-5486417ab6761eabc621373100d79d04e70e311a.tar.gz vyos-1x-5486417ab6761eabc621373100d79d04e70e311a.zip |
Merge pull request #3355 from sever-sever/T6109
T6109: Fix remote logging for sudo commands
-rw-r--r-- | src/etc/rsyslog.conf | 30 |
1 files changed, 15 insertions, 15 deletions
diff --git a/src/etc/rsyslog.conf b/src/etc/rsyslog.conf index 9781f0835..b3f41acb6 100644 --- a/src/etc/rsyslog.conf +++ b/src/etc/rsyslog.conf @@ -15,21 +15,6 @@ $KLogPath /proc/kmsg #### GLOBAL DIRECTIVES #### ########################### -# The lines below cause all listed daemons/processes to be logged into -# /var/log/auth.log, then drops the message so it does not also go to the -# regular syslog so that messages are not duplicated - -$outchannel auth_log,/var/log/auth.log -if $programname == 'CRON' or - $programname == 'sudo' or - $programname == 'su' - then :omfile:$auth_log - -if $programname == 'CRON' or - $programname == 'sudo' or - $programname == 'su' - then stop - # Use traditional timestamp format. # To enable high precision timestamps, comment out the following line. # A modern-style logfile format similar to TraditionalFileFormat, buth with high-precision timestamps and timezone information @@ -60,6 +45,21 @@ $Umask 0022 # $IncludeConfig /etc/rsyslog.d/*.conf +# The lines below cause all listed daemons/processes to be logged into +# /var/log/auth.log, then drops the message so it does not also go to the +# regular syslog so that messages are not duplicated + +$outchannel auth_log,/var/log/auth.log +if $programname == 'CRON' or + $programname == 'sudo' or + $programname == 'su' + then :omfile:$auth_log + +if $programname == 'CRON' or + $programname == 'sudo' or + $programname == 'su' + then stop + ############### #### RULES #### ############### |