2 # This file controls the configuration of the audit daemon
5 log_file = /var/log/audit/audit.log
13 dispatcher = /sbin/audispd
17 max_log_file_action = ROTATE
19 space_left_action = SYSLOG
20 action_mail_acct = root
22 admin_space_left_action = SUSPEND
23 disk_full_action = SUSPEND
24 disk_error_action = SUSPEND
28 ##tcp_client_ports = 1024-65535
29 tcp_client_max_idle = 0
31 krb5_principal = auditd
32 ##krb5_key_file = /etc/audit/audit.key