Index index by Group index by Distribution index by Vendor index by creation date index by Name Mirrors Help Search

audit-2.8.5-3.2 RPM for x86_64

From OpenSuSE Leap 15.3 for x86_64

Name: audit Distribution: SUSE Linux Enterprise 15
Version: 2.8.5 Vendor: SUSE LLC <https://www.suse.com/>
Release: 3.2 Build date: Fri Mar 12 21:51:28 2021
Group: System/Monitoring Build host: sheep57
Size: 661660 Source RPM: audit-secondary-2.8.5-3.2.src.rpm
Packager: https://www.suse.com/
Url: http://people.redhat.com/sgrubb/audit/
Summary: User Space Tools for Kernel Auditing
The audit package contains the user space utilities for storing and
processing the audit records generated by the audit subsystem in the
Linux kernel.

Provides

Requires

License

LGPL-2.1-or-later

Changelog

* Mon Feb 01 2021 dimstar@opensuse.org
  - Do not explicitly provide group(audit) in system-users-audit:
    this is automatically handled by rpm/providers.
* Thu Jan 28 2021 ematsumiya@suse.com
  - Create new "audit" group for read access to logs (bsc#1178154)
    * add change-default-log_group.patch
    * update audit-secondary.spec
* Wed Dec 02 2020 abergmann@suse.com
  - Enable Aarch64 processor support. (bsc#1179515 bsc#1179806)
* Fri Oct 16 2020 lnussel@suse.de
  - prepare usrmerge (boo#1029961)
* Mon Jan 13 2020 tonyj@suse.com
  - Update to version 2.6.5:
    * Fix segfault on shutdown
    * Fix hang on startup (#1587995)
    * Add sleep to script to dump state so file is ready when needed
    * Add auparse_normalizer support for SOFTWARE_UPDATE event
    * Mark netlabel events as simple events so that get processed quicker
    * When audispd is reconfiguring, only SIGHUP plugins with valid pid (#1614833)
    * Add 30-ospp-v42.rules to meet new Common Criteria requirements
    * Update lookup tables for the 4.18 kernel
    * In aureport, fix segfault in file report
    * Add auparse_normalizer support for labeled networking events
    * Fix memory leak in audisp-remote plugin when using krb5 transport. (#1622194)
    * Event aging is off by a second
    * In ausearch/auparse, correct event ordering to process oldest first
    * auparse_reset was not clearing everything it should
    * Add support for AUDIT_MAC_CALIPSO_ADD, AUDIT_MAC_CALIPSO_DEL events
    * In ausearch/report, lightly parse selinux portion of USER_AVC events
    * In ausearch/report, limit record size when malformed
    * In auditd, fix extract_type function for network originating events
    * In auditd, calculate right size and location for network originating events
    * Treat all network originating events as VER2 so dispatcher doesn't format it
    * In audisp-remote do an initial connection attempt (#1625156)
    * In auditd, allow expression of space left as a percentage (#1650670)
    * On PPC64LE systems, only allow 64 bit rules (#1462178)
    * Make some parts of auditd state report optional based on config
    * Fix ausearch when checkpointing a single file (Burn Alting)
    * Fix scripting in 31-privileged.rules wrt filecap (#1662516)
    * In ausearch, do not checkpt if stdin is input source
    * In libev, remove __cold__ attribute for functions to allow proper hardening
    * Add tests to configure.ac for openldap support
    * Make systemd support files use /run rather than /var/run (Christian Hesse)
    * Fix minor memory leak in auditd kerberos credentials code
    * Fix auditd regression where keep_logs is limited by rotate_logs 2 file test
    * In ausearch/report fix --end to use midnight time instead of now (#1671338)
  - Fix build errors when using gcc-10 no-common default (bsc#1160384)
    New patch: audit-fno-common.patch
  - Refresh audit-allow-manual-stop.patch
* Thu Mar 21 2019 jengelh@inai.de
  - Reduce scriptlets' hard dependency on systemd.
* Sat Jun 23 2018 antoine.belvire@opensuse.org
  - Update to version 2.8.4:
    * Generate checkpoint file even when not results are returned
      (Burn Alting).
    * Fix log file creation when file logging is disabled entirely
      (Vlad Glagolev).
    * Use SIGCONT to dump auditd internal state (rh#1504251).
    * Fix parsing of virtual timestamp fields in ausearch_expression
      (rh#1515903).
    * Fix parsing of uid & success for ausearch.
    * Hide lru symbols in auparse.
    * Fix aureport summary time range reporting.
    * Allow unlimited retries on startup for remote logging.
    * Add queue_depth to remote logging stats and increase default
      queue_depth size.
* Sun Jun 17 2018 antoine.belvire@opensuse.org
  - Update to version 2.8.3:
    * Correct msg function name in lru debug code.
    * Fix a segfault in auditd when dns resolution isn't available.
    * Make a reload legacy service for auditd.
    * In auparse python bindings, expose some new types that were
      missing.
    * In normalizer, pickup subject kind for user_login events.
    * Fix interpretation of unknown ioctcmds (rh#1540507).
    * Add ANOM_LOGIN_SERVICE, RESP_ORIGIN_BLOCK, &
      RESP_ORIGIN_BLOCK_TIMED events.
    * In auparse_normalize for USER_LOGIN events, map acct for
      subj_kind.
    * Fix logging of IPv6 addresses in DAEMON_ACCEPT events
      (rh#1534748).
    * Do not rotate auditd logs when num_logs < 2 (brozs).
* Tue Apr 03 2018 kukuk@suse.de
  - Use %license instead of %doc [bsc#1082318]
* Fri Mar 16 2018 tonyj@suse.com
  - Change openldap dependency to client only (bsc#1085003)
  - Resolve issue with previous change if both Python2 and Python3 are
    present, tests were failing as python2 bindings are preferred in this
    case.
* Thu Feb 22 2018 meissner@suse.com
  - reverted -j1 force ppc specific only
* Wed Feb 07 2018 tchvatal@suse.com
  - Add patch to fix test run without python2 interpreter:
    * audit-python3.patch
  - Update to 2.8.2 release:
    * Update tables for 4.14 kernel
    * Fixup ipv6 server side binding
    * AVC report from aureport was missing result column header (#1511606)
    * Add SOFTWARE_UPDATE event
    * In ausearch/report pickup any path and new-disk fields as a file
    * Fix value returned by auditctl --reset-lost (Richard Guy Briggs)
    * In auparse, fix expr_create_timestamp_comparison_ex to be numeric field
    * Fix building on old systems without linux/fanotify.h
    * Fix shell portability issues reported by shellcheck
    * Auditd validate_email should not use gethostbyname
* Tue Feb 06 2018 normand@linux.vnet.ibm.com
  - force -j1 for PowerPC make check to avoid build failure
    (lookup_test.o: file not recognized: File truncated)
* Wed Jan 17 2018 tchvatal@suse.com
  - Add conditions around python plugins to allow us to conditionalize
    them in enviroment without python2
* Thu Nov 09 2017 mpluskal@suse.com
  - Rename python binding packages to match current python packaging
    standards
  - Update python build dependencies to resolve future split of
    python2/3
* Sat Nov 04 2017 aavindraa@gmail.com
  - Update to version 2.8.1. See audit.spec (libaudit1) for upstream
    changelog
  - Remove audit-implicit-writev.patch (fixed upstream across 2
    commits)
    * 3b30db20ad983274989ce9a522120c3c225436b3
    * 07132c22314e9abbe64d1031fd8734243285bb3f
  - Cleanup with spec-cleaner
* Fri Aug 18 2017 dimstar@opensuse.org
  - Add audit-implicit-writev.patch: include sys/uio.h to ensure
    readv and writev are declared.
* Mon Jul 24 2017 jengelh@inai.de
  - Rectify RPM groups, diversify descriptions.
  - Remove mentions of static libraries because they are not built.
* Tue Jul 18 2017 tonyj@suse.com
  - Update to version 2.7.7. See audit.spec (libaudit1) for upstream
    changelog
    Since commit 6cf57d27 (2.7.4) audit is now started as an non-forking
    service (bsc#1042781).
    Add config: audit-stop.rules
    Refresh patch: audit-allow-manual-stop.patch
    Refresh patch: audit-no-gss.patch
* Fri Apr 01 2016 tchvatal@suse.com
  - Version update to 2.5. See audit.spec (libaudit1) for upstream
    changelog
  - Cleanup with spec-cleaner
  - Sort out bit /sbin /usr/sbin/ installation
  - Install the rules as documentation
  - Remove needless %py_requires from python subpkgs
* Fri Aug 21 2015 tonyj@suse.com
  - Update to version 2.4.4. See audit.spec (libaudit1) for upstream
    changelog
  - Add python3 bindings for libaudit and libauparse
  - Remove patch 'audit-no_m4_dir.patch'
    (added Fri Apr 26 11:14:39 UTC 2013 by mmeister@suse.com)
    No idea what earlier 'automake' build error this was trying to fix but
    it broke the handling of "--without-libcap-ng". Anyways, no build error
    occurs now and m4 path is also needed in v2.4.4 to find ax_prog_cc_for_build

Files

/etc/audisp
/etc/audisp/audispd.conf
/etc/audisp/plugins.d
/etc/audisp/plugins.d/af_unix.conf
/etc/audisp/plugins.d/syslog.conf
/etc/audit
/etc/audit.rules
/etc/audit/audit-stop.rules
/etc/audit/auditd.conf
/etc/audit/rules.d
/etc/audit/rules.d/audit.rules
/etc/auditd.conf
/sbin/audispd
/sbin/auditctl
/sbin/auditd
/sbin/augenrules
/sbin/aureport
/sbin/ausearch
/sbin/autrace
/usr/bin/aulast
/usr/bin/aulastlog
/usr/bin/ausyscall
/usr/bin/auvirt
/usr/lib/systemd/system/auditd.service
/usr/sbin/audispd
/usr/sbin/auditctl
/usr/sbin/auditd
/usr/sbin/augenrules
/usr/sbin/aureport
/usr/sbin/ausearch
/usr/sbin/autrace
/usr/sbin/rcauditd
/usr/share/doc/packages/audit
/usr/share/doc/packages/audit/10-base-config.rules
/usr/share/doc/packages/audit/10-no-audit.rules
/usr/share/doc/packages/audit/11-loginuid.rules
/usr/share/doc/packages/audit/12-cont-fail.rules
/usr/share/doc/packages/audit/12-ignore-error.rules
/usr/share/doc/packages/audit/20-dont-audit.rules
/usr/share/doc/packages/audit/21-no32bit.rules
/usr/share/doc/packages/audit/22-ignore-chrony.rules
/usr/share/doc/packages/audit/23-ignore-filesystems.rules
/usr/share/doc/packages/audit/30-nispom.rules
/usr/share/doc/packages/audit/30-ospp-v42.rules
/usr/share/doc/packages/audit/30-pci-dss-v31.rules
/usr/share/doc/packages/audit/30-stig.rules
/usr/share/doc/packages/audit/31-privileged.rules
/usr/share/doc/packages/audit/32-power-abuse.rules
/usr/share/doc/packages/audit/40-local.rules
/usr/share/doc/packages/audit/41-containers.rules
/usr/share/doc/packages/audit/42-injection.rules
/usr/share/doc/packages/audit/43-module-load.rules
/usr/share/doc/packages/audit/70-einval.rules
/usr/share/doc/packages/audit/71-networking.rules
/usr/share/doc/packages/audit/99-finalize.rules
/usr/share/doc/packages/audit/ChangeLog
/usr/share/doc/packages/audit/README
/usr/share/doc/packages/audit/README-rules
/usr/share/doc/packages/audit/auditd.cron
/usr/share/licenses/audit
/usr/share/licenses/audit/COPYING
/usr/share/man/man5/audispd.conf.5.gz
/usr/share/man/man5/auditd.conf.5.gz
/usr/share/man/man5/ausearch-expression.5.gz
/usr/share/man/man7/audit.rules.7.gz
/usr/share/man/man8/audispd.8.gz
/usr/share/man/man8/auditctl.8.gz
/usr/share/man/man8/auditd.8.gz
/usr/share/man/man8/augenrules.8.gz
/usr/share/man/man8/aulast.8.gz
/usr/share/man/man8/aulastlog.8.gz
/usr/share/man/man8/aureport.8.gz
/usr/share/man/man8/ausearch.8.gz
/usr/share/man/man8/ausyscall.8.gz
/usr/share/man/man8/autrace.8.gz
/usr/share/man/man8/auvirt.8.gz
/var/log/audit
/var/log/audit/audit.log
/var/spool/audit


Generated by rpm2html 1.8.1

Fabrice Bellet, Sat Mar 9 14:54:44 2024