LinuxQuestions.org
Latest LQ Deal: Latest LQ Deals
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Newbie
User Name
Password
Linux - Newbie This Linux forum is for members that are new to Linux.
Just starting out and have a question? If it is not in the man pages or the how-to's this is the place!

Notices


Reply
  Search this Thread
Old 05-18-2018, 12:46 AM   #1
zahidh
LQ Newbie
 
Registered: May 2018
Posts: 2

Rep: Reputation: Disabled
How can i exclude userPassword section from /var/log/dirsrv/slapd-Example/audit


Hello All,
In my IPA/IDM server i enabled audit log and its capturing user addition/deletion/password change... etc

eg :- /var/log/dirsrv/slapd-Example/audit

time: 20180515061921
dn: uid=user7,cn=users,cn=accounts,dc=Example,dc=com
result: 0
changetype: add
displayName: user7 xyz
uid: user7
krbCanonicalName: user7@Example.com
objectClass: top
objectClass: person
objectClass: organizationalperson
objectClass: inetorgperson
objectClass: inetuser
objectClass: posixaccount
objectClass: krbprincipalaux
objectClass: krbticketpolicyaux
objectClass: ipaobject
objectClass: ipasshuser
objectClass: ipaSshGroupOfPubKeys
loginShell: /bin/sh
uidNumber: -1
initials: ux
gidNumber: -1
gecos: user7 xyz
sn: xyz
homeDirectory: /home/user7
mail: user7@Example.com
krbPrincipalName: user7@Example.com
givenName: user7
cn: user7 xyz
userPassword:: e1NFDFrEGg34F3TSGF%EE1M34TJ9VWE4M2w343RE65FDGRw5bld542Y0HgGrb0J1UUFqZ2hqNU1Fe334HBxajHGFR2c2tBNTRk9V jCVGhlSG1DeG789KTUovK2pHGSVGpMNTZXb29673VFVGFPSVBm65SVh0YDDXN


i want to exclude userPassword section from /var/log/dirsrv/slapd-Example/audit

Can some one to help to exclude it from audit.Hello All,

Last edited by zahidh; 05-18-2018 at 12:47 AM.
 
Old 05-20-2018, 07:58 PM   #2
AwesomeMachine
LQ Guru
 
Registered: Jan 2005
Location: USA and Italy
Distribution: Debian testing/sid; OpenSuSE; Fedora; Mint
Posts: 5,524

Rep: Reputation: 1015Reputation: 1015Reputation: 1015Reputation: 1015Reputation: 1015Reputation: 1015Reputation: 1015Reputation: 1015
I don't think the logging is configurable on that level.
 
1 members found this post helpful.
Old 05-25-2018, 12:10 AM   #3
zahidh
LQ Newbie
 
Registered: May 2018
Posts: 2

Original Poster
Rep: Reputation: Disabled
Quote:
Originally Posted by AwesomeMachine View Post
I don't think the logging is configurable on that level.
Thank you for your comment, however there could be something to remove userPassword from auditlog, if anyone can help
 
Old 05-25-2018, 01:47 PM   #4
AwesomeMachine
LQ Guru
 
Registered: Jan 2005
Location: USA and Italy
Distribution: Debian testing/sid; OpenSuSE; Fedora; Mint
Posts: 5,524

Rep: Reputation: 1015Reputation: 1015Reputation: 1015Reputation: 1015Reputation: 1015Reputation: 1015Reputation: 1015Reputation: 1015
I couldn't find any way to do it. And I don't think the contents are usable as a password.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Exclude a from being logged in /var/log/wtmp vahab Linux - Security 3 12-30-2011 01:42 AM
[SOLVED] Logrotate - what is rotating /var/log/audit/audit.log? veeruk101 Linux - Newbie 3 11-03-2011 07:53 PM
Question about syslog.conf. How can I exclude local7.notice from /var/log/messages? huntkey Linux - Server 2 04-25-2009 10:00 AM
kernel audit - var/log/messages timinator Linux - Security 1 11-13-2007 03:02 PM
/var/log/messages - kernel: audit(1107868785.573:0): avc: denied { getattr } lothario Linux - Security 2 02-10-2005 04:24 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Newbie

All times are GMT -5. The time now is 12:40 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration