AIX auditpr timestamp format

The name of the pictureThe name of the pictureThe name of the pictureClash Royale CLAN TAG#URR8PPP











up vote
1
down vote

favorite












Is there a way to customize the timestamp format that the auditpr command on AIX generates?



I am logging to binary, and when I use auditpr to read the binary audit logs, I get something similar to :



event login status time command wpar name long login
--------------- -------- ----------- ------------------------ ------------------------------- ------------------------- ----------
AUD_LOG_READ root OK Thu Sep 27 19:46:17 2018 rsyslogd Global root


I have a script that parses this from multiple servers, and there are 2 issues with that time format:



  1. Hard for a script to parse with default time parsing utilities.

  2. It doesn't include the UTC offset to compare logs from server in different time zones.

I'd prefer:



event login status time command wpar name long login
--------------- -------- ----------- -------------------------- ------------------------------- ------------------------- ----------
AUD_LOG_READ root OK 2018-09-27T19:46:17+00:00 rsyslogd Global root


Does AIX provide the means to output the timestamp in the requested format, or another format that includes the UTC offset?










share|improve this question

























    up vote
    1
    down vote

    favorite












    Is there a way to customize the timestamp format that the auditpr command on AIX generates?



    I am logging to binary, and when I use auditpr to read the binary audit logs, I get something similar to :



    event login status time command wpar name long login
    --------------- -------- ----------- ------------------------ ------------------------------- ------------------------- ----------
    AUD_LOG_READ root OK Thu Sep 27 19:46:17 2018 rsyslogd Global root


    I have a script that parses this from multiple servers, and there are 2 issues with that time format:



    1. Hard for a script to parse with default time parsing utilities.

    2. It doesn't include the UTC offset to compare logs from server in different time zones.

    I'd prefer:



    event login status time command wpar name long login
    --------------- -------- ----------- -------------------------- ------------------------------- ------------------------- ----------
    AUD_LOG_READ root OK 2018-09-27T19:46:17+00:00 rsyslogd Global root


    Does AIX provide the means to output the timestamp in the requested format, or another format that includes the UTC offset?










    share|improve this question























      up vote
      1
      down vote

      favorite









      up vote
      1
      down vote

      favorite











      Is there a way to customize the timestamp format that the auditpr command on AIX generates?



      I am logging to binary, and when I use auditpr to read the binary audit logs, I get something similar to :



      event login status time command wpar name long login
      --------------- -------- ----------- ------------------------ ------------------------------- ------------------------- ----------
      AUD_LOG_READ root OK Thu Sep 27 19:46:17 2018 rsyslogd Global root


      I have a script that parses this from multiple servers, and there are 2 issues with that time format:



      1. Hard for a script to parse with default time parsing utilities.

      2. It doesn't include the UTC offset to compare logs from server in different time zones.

      I'd prefer:



      event login status time command wpar name long login
      --------------- -------- ----------- -------------------------- ------------------------------- ------------------------- ----------
      AUD_LOG_READ root OK 2018-09-27T19:46:17+00:00 rsyslogd Global root


      Does AIX provide the means to output the timestamp in the requested format, or another format that includes the UTC offset?










      share|improve this question













      Is there a way to customize the timestamp format that the auditpr command on AIX generates?



      I am logging to binary, and when I use auditpr to read the binary audit logs, I get something similar to :



      event login status time command wpar name long login
      --------------- -------- ----------- ------------------------ ------------------------------- ------------------------- ----------
      AUD_LOG_READ root OK Thu Sep 27 19:46:17 2018 rsyslogd Global root


      I have a script that parses this from multiple servers, and there are 2 issues with that time format:



      1. Hard for a script to parse with default time parsing utilities.

      2. It doesn't include the UTC offset to compare logs from server in different time zones.

      I'd prefer:



      event login status time command wpar name long login
      --------------- -------- ----------- -------------------------- ------------------------------- ------------------------- ----------
      AUD_LOG_READ root OK 2018-09-27T19:46:17+00:00 rsyslogd Global root


      Does AIX provide the means to output the timestamp in the requested format, or another format that includes the UTC offset?







      aix timestamps audit






      share|improve this question













      share|improve this question











      share|improve this question




      share|improve this question










      asked Sep 27 at 19:54









      user3246693

      62




      62

























          active

          oldest

          votes











          Your Answer







          StackExchange.ready(function()
          var channelOptions =
          tags: "".split(" "),
          id: "106"
          ;
          initTagRenderer("".split(" "), "".split(" "), channelOptions);

          StackExchange.using("externalEditor", function()
          // Have to fire editor after snippets, if snippets enabled
          if (StackExchange.settings.snippets.snippetsEnabled)
          StackExchange.using("snippets", function()
          createEditor();
          );

          else
          createEditor();

          );

          function createEditor()
          StackExchange.prepareEditor(
          heartbeatType: 'answer',
          convertImagesToLinks: false,
          noModals: false,
          showLowRepImageUploadWarning: true,
          reputationToPostImages: null,
          bindNavPrevention: true,
          postfix: "",
          onDemand: true,
          discardSelector: ".discard-answer"
          ,immediatelyShowMarkdownHelp:true
          );



          );













           

          draft saved


          draft discarded


















          StackExchange.ready(
          function ()
          StackExchange.openid.initPostLogin('.new-post-login', 'https%3a%2f%2funix.stackexchange.com%2fquestions%2f471924%2faix-auditpr-timestamp-format%23new-answer', 'question_page');

          );

          Post as a guest



































          active

          oldest

          votes













          active

          oldest

          votes









          active

          oldest

          votes






          active

          oldest

          votes















           

          draft saved


          draft discarded















































           


          draft saved


          draft discarded














          StackExchange.ready(
          function ()
          StackExchange.openid.initPostLogin('.new-post-login', 'https%3a%2f%2funix.stackexchange.com%2fquestions%2f471924%2faix-auditpr-timestamp-format%23new-answer', 'question_page');

          );

          Post as a guest













































































          Popular posts from this blog

          How to check contact read email or not when send email to Individual?

          Bahrain

          Postfix configuration issue with fips on centos 7; mailgun relay