Go to main content

Oracle MiniCluster S7-2 Security Guide

Exit Print View

Updated: October 2021
 
 

Review Audit Logs

  1. Log into the global zone as mcinstall, and assume the root role.

    For Oracle ILOM login instructions, refer to Accessing Oracle ILOM in Oracle MiniCluster S7-2 Administration Guide.

    % ssh mcinstall@mc4-n1
    Password: ***************
    Last login: Tue Jun 28 10:47:38 2016 on rad/59
    Oracle Corporation      SunOS 5.11      11.3    June 2016
    Minicluster Setup successfully configured
    Unauthorized modification of this system configuration strictly prohibited
    mcinstall@mc4-n1:/var/home/mcinstall % su root
    Password: ***************
    #
    
  2. Use the auditreduce command as shown.

    This is syntax for viewing the audit logs:

    auditreduce -z vm_name audit_file_name | praudit -s

    # cd /var/share/audit
    #
    # ls
    20160628051437.not_terminated.mc4-n1
    #
    # auditreduce  -z dbvmg1-zone-1-mc4-n1 20160628051437.not_terminated.mc4-n1 | praudit -s
    file,2016-06-27 22:58:53.000 -07:00,
    header,127,2,AUE_zone_state,,mc4-n1.us.example.com,2016-06-27 22:58:53.354 -07:00
    subject,mcinstall,root,root,root,root,26272,415120213,9462 65558 mc4-n1.us.example.com
    text,boot
    zone,dbvmg1-zone-1-mc4-n1
    return,success,0
    zone,global
    header,88,2,AUE_zone_state,na,mc4-n1.us.example.com,2016-06-27 23:02:30.767 -07:00
    text,reboot
    zone,dbvmg1-zone-1-mc4-n1
    return,success,0
    zone,global
    file,2016-06-27 23:02:30.000 -07:00,