Linux audit rule updates

Last Updated : Nov 18, 2020 |

If your enterprise requires additional security, you can work with Avaya support personnel to update the default audit rules for Linux. The option to update audit rules is particularly useful for government solutions using JITC.

Root privileges are required to update audit rules. Contact Avaya support personnel for assistance, but before doing this, take a full backup of Avaya Common Services and application data.

For more information about audit rule options, see https://access.redhat.com/documentation/en-us/red_hat_enterprise_linux/7/html/security_guide/sec-defining_audit_rules_and_controls. The audit package also includes various preconfigured files, as described in the Preconfigured Rules Files section.

Important:

When a node goes down, your audit rule updates are lost. Work with Avaya support personnel to re-apply your audit rule updates after an infrastructure upgrade, a restore, or a node resurrection.