The audit service audits the entire system, including audit events in zones. A system that has installed non-global zones can audit all zones identically, or can configure auditing per zone. For more information, see Planning Auditing in Zones.
When you audit the non-global zones exactly as the global zone is audited, the non-global zone administrators might not have access to the audit records. Also, the global zone administrator can modify the audit preselection masks of users in non-global zones.
When you audit the non-global zones individually, the audit records are visible to the non-global zone and to the global zone from the non-global zone root.