346 298:AUE_PF_POLICY_FLIP:Flip IPsec policy:as
347 299:AUE_PF_POLICY_FLUSH:Flush IPsec policy rules:as
348 300:AUE_PF_POLICY_ALGS:Update IPsec algorithms:as
349 # AUE_PORTFS is a placeholder and won't be generated.
350 301:AUE_PORTFS:portfs(2) - file events source - place holder:no
351 #
352 302:AUE_LABELSYS_TNRH:tnrh(2) - config TN remote host cache:as
353 303:AUE_LABELSYS_TNRHTP:tnrhtp(2) - config TN remote host template cache:as
354 304:AUE_LABELSYS_TNMLP:tnmlp(2) - config TN multi-level port entry:as
355 #
356 305:AUE_PORTFS_ASSOCIATE:portfs(2) - file events source - PORT_ASSOCIATE:fa
357 306:AUE_PORTFS_DISSOCIATE:portfs(2) - file events source - PORT_DISSOCIATE:fa
358 #
359 307:AUE_SETSID:setsid(2):pm
360 308:AUE_SETPGID:setpgid(2):pm
361 309:AUE_FACCESSAT:faccessat(2):no
362 310:AUE_AUDITON_GETAMASK:auditon(2) - get default user preselection mask:aa
363 311:AUE_AUDITON_SETAMASK:auditon(2) - set default user preselection mask:as
364 312:AUE_PSECFLAGS:psecflags(2) - set process security flags:pm
365 313:AUE_SACL:SACL-based File Access Auditing:sa
366 #
367 # user level audit events
368 # 2048 - 6143 Reserved
369 #
370 # 6000 - 7999 allocated for Solaris
371 #
372 6144:AUE_at_create:at-create atjob:ua
373 6145:AUE_at_delete:at-delete atjob (at or atrm):ua
374 6146:AUE_at_perm:at-permission:no
375 6147:AUE_cron_invoke:cron-invoke:ua
376 6148:AUE_crontab_create:crontab-crontab created:ua
377 6149:AUE_crontab_delete:crontab-crontab deleted:ua
378 6150:AUE_crontab_perm:crontab-persmisson:no
379 6151:AUE_inetd_connect:inetd connect:na
380 6152:AUE_login:login - local:lo
381 6153:AUE_logout:logout:lo
382 6154:AUE_telnet:login - telnet:lo
383 6155:AUE_rlogin:login - rlogin:lo
384 6156:AUE_mountd_mount:mount:na
385 6157:AUE_mountd_umount:unmount:na
|
346 298:AUE_PF_POLICY_FLIP:Flip IPsec policy:as
347 299:AUE_PF_POLICY_FLUSH:Flush IPsec policy rules:as
348 300:AUE_PF_POLICY_ALGS:Update IPsec algorithms:as
349 # AUE_PORTFS is a placeholder and won't be generated.
350 301:AUE_PORTFS:portfs(2) - file events source - place holder:no
351 #
352 302:AUE_LABELSYS_TNRH:tnrh(2) - config TN remote host cache:as
353 303:AUE_LABELSYS_TNRHTP:tnrhtp(2) - config TN remote host template cache:as
354 304:AUE_LABELSYS_TNMLP:tnmlp(2) - config TN multi-level port entry:as
355 #
356 305:AUE_PORTFS_ASSOCIATE:portfs(2) - file events source - PORT_ASSOCIATE:fa
357 306:AUE_PORTFS_DISSOCIATE:portfs(2) - file events source - PORT_DISSOCIATE:fa
358 #
359 307:AUE_SETSID:setsid(2):pm
360 308:AUE_SETPGID:setpgid(2):pm
361 309:AUE_FACCESSAT:faccessat(2):no
362 310:AUE_AUDITON_GETAMASK:auditon(2) - get default user preselection mask:aa
363 311:AUE_AUDITON_SETAMASK:auditon(2) - set default user preselection mask:as
364 312:AUE_PSECFLAGS:psecflags(2) - set process security flags:pm
365 313:AUE_SACL:SACL-based File Access Auditing:sa
366 314:AUE_AUDITON_GETPINFO:auditon(2) - get process info:aa
367 315:AUE_AUDITON_SETPMASK:auditon(2) - set process preselection mask:as
368 316:AUE_AUDITON_GETKAUDIT:auditon(2) - get kernel audit characteristics:aa
369 317:AUE_AUDITON_SETKAUDIT:auditon(2) - set kernel audit characteristics:as
370 318:AUE_AUDITON_OTHER:auditon(2) - other event:aa
371 #
372 # user level audit events
373 # 2048 - 6143 Reserved
374 #
375 # 6000 - 7999 allocated for Solaris
376 #
377 6144:AUE_at_create:at-create atjob:ua
378 6145:AUE_at_delete:at-delete atjob (at or atrm):ua
379 6146:AUE_at_perm:at-permission:no
380 6147:AUE_cron_invoke:cron-invoke:ua
381 6148:AUE_crontab_create:crontab-crontab created:ua
382 6149:AUE_crontab_delete:crontab-crontab deleted:ua
383 6150:AUE_crontab_perm:crontab-persmisson:no
384 6151:AUE_inetd_connect:inetd connect:na
385 6152:AUE_login:login - local:lo
386 6153:AUE_logout:logout:lo
387 6154:AUE_telnet:login - telnet:lo
388 6155:AUE_rlogin:login - rlogin:lo
389 6156:AUE_mountd_mount:mount:na
390 6157:AUE_mountd_umount:unmount:na
|