How to restrain Audit log in vApp console

Document ID : KB000117360
Last Modified Date : 16/10/2018
Show Technical Document Details
Question:
We see  many audit logs in vApp console and want to restrain them.
How do we configure vApp?

Oct 5 09:57:54 ServerA kernel: type = 1103 audit (1538701074.162: 2054): user pid = 23955 uid = 0 auid = 4294967295 voice = 4294967295 msg = 'op = PAM: setcred acct = usr / sbin / sshd "hostname = ServerA  addr = xxx.xxx.xxx.xxx terminal = ssh res = success' 
Oct 5 09:57:54 ServerA kernel: type = 1006 audit (1538701074.165: 2055): pid = 23955 uid = 0 old auid = 4294967295 new auid = 500 old sound = 4294967295 new voice = 62 
Environment:
CA Identity Suite Virtual Appliance r14.x
 
Answer:
  • Run following command for checking status of audit log.   
         audit_show
  • Run following command for disabling Audit log.
         audit_disable
  • Run following command for enabling Audit log.
         audit_enable