Originally posted by: SystemAdmin
I config the AIX(5.3) audit service to audit the write action of named file (define the file in the audit object file: /ect/security/audit/objects). I use the BIN mode. I use "/usr/sbin/auditpr -v < /audit/bin1 " to display the audit log, the result is:
"S_NOTAUTH_READ root OK Thu May 24 15:07:27 2007 cat
<tail format undefined>"
What's mean of "tail format undefined"? How can I know which file is audited?
Thanks.
Jerry