Linux 系统添加操做记录--命令审计功能

**Linux 系统添加操做记录审计bash

1.mkdir -p /usr/local/domob/records/dom

chmod 777 /usr/local/domob/records/ide

chmod +t /usr/local/domob/records/cmd

2.vi /etc/profile 在最后添加下面的代码it

if [ ! -d /usr/local/domob/records/${LOGNAME} ]class

thenawk

mkdir -p /usr/local/domob/records/${LOGNAME}date

chmod 300 /usr/local/domob/records/${LOGNAME}file

fidi

export HISTORY_FILE="/usr/local/domob/records/${LOGNAME}/bash_history"

export PROMPT_COMMAND='{ date "+%Y-%m-%d %T ##### $(who am i |awk "{print \$1\" \"\$2\" \"\$5}") #### $(history 1 | { read x cmd; echo "$cmd"; })"; } >>$HISTORY_FILE'**

相关文章
相关标签/搜索