Commands for modifying auditing configurations

If you want to change an auditing setting, you can modify the current configuration at any time, including modifying the log path destination and log format, modifying the categories of events to audit, how to automatically save log files, and specify the maximum number of log files to save.

If you want to... Use this command... For more information, see...
Modify the log destination path vserver audit modify with the -destination parameter
Modify the category of events to audit vserver audit modify with the -events parameter
Note: To audit central access policy staging events, the Dynamic Access Control (DAC) CIFS server option must be enabled on the storage virtual machine (SVM).
Modify the log format vserver audit modify with the -format parameter
Enabling automatic saves based on internal log file size vserver audit modify with the -rotate-size parameter
Enabling automatic saves based on a time interval vserver audit modify with the -rotate-schedule-month, -rotate-schedule-dayofweek, -rotate-schedule-day, -rotate-schedule-hour, and -rotate-schedule-minute parameters
Specifying the maximum number of saved log files vserver audit modify with the -rotate-limit parameter