Educause Security Discussion mailing list archives

Re: How much host data collected?


From: Valdis Kletnieks <valdis.kletnieks () VT EDU>
Date: Thu, 26 Apr 2018 16:45:48 -0400

On Thu, 26 Apr 2018 14:37:27 -0500, Alan Amesbury said:
      * Are you considering the differences in OSes?  Different OSes also log at
        significantly different levels depending on their settings.  Windows hosts, for
        example, can produce MASSIVE amounts of data when compared to a Unix host.

Oh, it's quite possible to generate massive amounts on a Linux box too.
Just configure the 'audit' subsystem to do per-syscall logging :)

Attachment: _bin
Description:


Current thread: