Commands for modifying auditing configurations

Contributors

If you want to change an auditing setting, you can modify the current configuration at any time, including modifying the log path destination and log format, modifying the categories of events to audit, how to automatically save log files, and specify the maximum number of log files to save.

If you want to…​ Use this command…​ For more information, see…​

Modify the log destination path

vserver audit modify with the -destination parameter

Modify the category of events to audit

vserver audit modify with the -events parameter

Note

To audit central access policy staging events, the Dynamic Access Control (DAC) CIFS server option must be enabled on the storage virtual machine (SVM).

Modify the log format

vserver audit modify with the -format parameter

Enabling automatic saves based on internal log file size

vserver audit modify with the -rotate-size parameter

Enabling automatic saves based on a time interval

vserver audit modify with the -rotate-schedule-month, -rotate-schedule-dayofweek, -rotate-schedule-day, -rotate-schedule-hour, and -rotate-schedule-minute parameters

Specifying the maximum number of saved log files

vserver audit modify with the -rotate-limit parameter