AIX auditpr timestamp format
Clash Royale CLAN TAG#URR8PPP
up vote
1
down vote
favorite
Is there a way to customize the timestamp format that the auditpr command on AIX generates?
I am logging to binary, and when I use auditpr to read the binary audit logs, I get something similar to :
event login status time command wpar name long login
--------------- -------- ----------- ------------------------ ------------------------------- ------------------------- ----------
AUD_LOG_READ root OK Thu Sep 27 19:46:17 2018 rsyslogd Global root
I have a script that parses this from multiple servers, and there are 2 issues with that time format:
- Hard for a script to parse with default time parsing utilities.
- It doesn't include the UTC offset to compare logs from server in different time zones.
I'd prefer:
event login status time command wpar name long login
--------------- -------- ----------- -------------------------- ------------------------------- ------------------------- ----------
AUD_LOG_READ root OK 2018-09-27T19:46:17+00:00 rsyslogd Global root
Does AIX provide the means to output the timestamp in the requested format, or another format that includes the UTC offset?
aix timestamps audit
add a comment |Â
up vote
1
down vote
favorite
Is there a way to customize the timestamp format that the auditpr command on AIX generates?
I am logging to binary, and when I use auditpr to read the binary audit logs, I get something similar to :
event login status time command wpar name long login
--------------- -------- ----------- ------------------------ ------------------------------- ------------------------- ----------
AUD_LOG_READ root OK Thu Sep 27 19:46:17 2018 rsyslogd Global root
I have a script that parses this from multiple servers, and there are 2 issues with that time format:
- Hard for a script to parse with default time parsing utilities.
- It doesn't include the UTC offset to compare logs from server in different time zones.
I'd prefer:
event login status time command wpar name long login
--------------- -------- ----------- -------------------------- ------------------------------- ------------------------- ----------
AUD_LOG_READ root OK 2018-09-27T19:46:17+00:00 rsyslogd Global root
Does AIX provide the means to output the timestamp in the requested format, or another format that includes the UTC offset?
aix timestamps audit
add a comment |Â
up vote
1
down vote
favorite
up vote
1
down vote
favorite
Is there a way to customize the timestamp format that the auditpr command on AIX generates?
I am logging to binary, and when I use auditpr to read the binary audit logs, I get something similar to :
event login status time command wpar name long login
--------------- -------- ----------- ------------------------ ------------------------------- ------------------------- ----------
AUD_LOG_READ root OK Thu Sep 27 19:46:17 2018 rsyslogd Global root
I have a script that parses this from multiple servers, and there are 2 issues with that time format:
- Hard for a script to parse with default time parsing utilities.
- It doesn't include the UTC offset to compare logs from server in different time zones.
I'd prefer:
event login status time command wpar name long login
--------------- -------- ----------- -------------------------- ------------------------------- ------------------------- ----------
AUD_LOG_READ root OK 2018-09-27T19:46:17+00:00 rsyslogd Global root
Does AIX provide the means to output the timestamp in the requested format, or another format that includes the UTC offset?
aix timestamps audit
Is there a way to customize the timestamp format that the auditpr command on AIX generates?
I am logging to binary, and when I use auditpr to read the binary audit logs, I get something similar to :
event login status time command wpar name long login
--------------- -------- ----------- ------------------------ ------------------------------- ------------------------- ----------
AUD_LOG_READ root OK Thu Sep 27 19:46:17 2018 rsyslogd Global root
I have a script that parses this from multiple servers, and there are 2 issues with that time format:
- Hard for a script to parse with default time parsing utilities.
- It doesn't include the UTC offset to compare logs from server in different time zones.
I'd prefer:
event login status time command wpar name long login
--------------- -------- ----------- -------------------------- ------------------------------- ------------------------- ----------
AUD_LOG_READ root OK 2018-09-27T19:46:17+00:00 rsyslogd Global root
Does AIX provide the means to output the timestamp in the requested format, or another format that includes the UTC offset?
aix timestamps audit
aix timestamps audit
asked Sep 27 at 19:54
user3246693
62
62
add a comment |Â
add a comment |Â
active
oldest
votes
active
oldest
votes
active
oldest
votes
active
oldest
votes
active
oldest
votes
Sign up or log in
StackExchange.ready(function ()
StackExchange.helpers.onClickDraftSave('#login-link');
);
Sign up using Google
Sign up using Facebook
Sign up using Email and Password
Post as a guest
StackExchange.ready(
function ()
StackExchange.openid.initPostLogin('.new-post-login', 'https%3a%2f%2funix.stackexchange.com%2fquestions%2f471924%2faix-auditpr-timestamp-format%23new-answer', 'question_page');
);
Post as a guest
Sign up or log in
StackExchange.ready(function ()
StackExchange.helpers.onClickDraftSave('#login-link');
);
Sign up using Google
Sign up using Facebook
Sign up using Email and Password
Post as a guest
Sign up or log in
StackExchange.ready(function ()
StackExchange.helpers.onClickDraftSave('#login-link');
);
Sign up using Google
Sign up using Facebook
Sign up using Email and Password
Post as a guest
Sign up or log in
StackExchange.ready(function ()
StackExchange.helpers.onClickDraftSave('#login-link');
);
Sign up using Google
Sign up using Facebook
Sign up using Email and Password
Sign up using Google
Sign up using Facebook
Sign up using Email and Password