Deleted Added
sdiff udiff text old ( 155214 ) new ( 155247 )
full compact
1.\" Copyright (c) 2006 Robert N. M. Watson
2.\" All rights reserved.
3.\"
4.\" Redistribution and use in source and binary forms, with or without
5.\" modification, are permitted provided that the following conditions
6.\" are met:
7.\" 1. Redistributions of source code must retain the above copyright
8.\" notice, this list of conditions and the following disclaimer.

--- 8 unchanged lines hidden (view full) ---

17.\" FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
18.\" DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
19.\" OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
20.\" HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
21.\" LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
22.\" OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
23.\" SUCH DAMAGE.
24.\"
25.\" $FreeBSD: head/share/man/man4/audit.4 155214 2006-02-02 10:32:27Z rwatson $
26.\"
27.Dd February 2, 2006
28.Os
29.Dt AUDIT 4
30.Sh NAME
31.Nm audit
32.Nd Security Event Audit
33.Sh SYNOPSIS

--- 4 unchanged lines hidden (view full) ---

38of the Common Criteria (CC) Common Access Protection Profile (CAPP)
39evaluation.
40The
41.Fx
42audit facility implements the de facto industry standard BSM API, file
43formats, and command line interface, first found in the Solaris operating
44system.
45Information on the user space implementation can be found in
46.Xr libbsm 3
47man page.
48.Pp
49Audit support is enabled at boot, if present in the kernel, using an
50.Xr rc.conf 5
51flag.
52The audit daemon,
53.Xr auditd 8 ,
54is responsible for configuring the kernel to perform audit, pushing
55configuration data from the various audit configuration files into the

--- 59 unchanged lines hidden ---