Q: 1
Examine this command and output:
# ausearch -k mkdir
type=SYSCALL msg=audit(1604360199.719:44733): arch=c000003e syscall=83 success=no
a0=55dec0b47400 a1=lc0 a2=0 a3=0
items=2 ppid=1354 pid=284632 auid=4294967295 uid=996 gid=996 euid=998 suid=998 fsuid=998
egid=996 sgid=996 fsgid=996
tty=(none) ses=429 comm="pkla-check-auth" exe="/usr/bin/pkla-check-authorization"
subj=system_u:system_r:policykit_auth_t:s0 key="mkdir"
Which command displays the syscall in text format instead of numerical format?
Options
Discussion
No comments yet. Be the first to comment.
Be respectful. No spam.