diff options
Diffstat (limited to 'framework/src/audit/init.d/auditd.service')
-rw-r--r-- | framework/src/audit/init.d/auditd.service | 22 |
1 files changed, 22 insertions, 0 deletions
diff --git a/framework/src/audit/init.d/auditd.service b/framework/src/audit/init.d/auditd.service new file mode 100644 index 00000000..5921c1cd --- /dev/null +++ b/framework/src/audit/init.d/auditd.service @@ -0,0 +1,22 @@ +[Unit] +Description=Security Auditing Service +DefaultDependencies=no +After=local-fs.target systemd-tmpfiles-setup.service +Conflicts=shutdown.target +Before=sysinit.target shutdown.target +RefuseManualStop=yes +ConditionKernelCommandLine=!audit=0 + +[Service] +ExecStart=/sbin/auditd -n +## To use augenrules, copy this file to /etc/systemd/system/auditd.service +## and uncomment the next line and delete/comment out the auditctl line. +## Then copy existing rules to /etc/audit/rules.d/ +## Not doing this last step can cause loss of existing rules +#ExecStartPost=-/sbin/augenrules --load +ExecStartPost=-/sbin/auditctl -R /etc/audit/audit.rules +ExecReload=/bin/kill -HUP $MAINPID + +[Install] +WantedBy=multi-user.target + |