Re: Feature Request:
Reply #3 –
You need to download 'audit-openrc' for it to work. I'm testing it out right now.
Maybe I'm misunderstanding how Audit should be setup and configured in Artix.
rc-service auditd start
rc-update add auditd
reboot
ausearch -i -k recon
<no matches>
ausearch -i -k shell
<no matches>
ausearch -i -k anon_file_creation
<no matches>
I'll cat the log file and see what's in it.
I've gone to the mirror site, in 'system' downloaded the 'audit-openrc' file. Now I'll have it for later.
In 'World', and downloaded the 'nftables' and 'nftables-openrc' files.
Do I need to save the .sig file also?