Question: Assessment 2 - Exercise 4 Security Auditing - Logging Demonstrate your understanding of logging and auditing: a . Briefly discuss and contrast the similar and
Assessment Exercise Security Auditing Logging
Demonstrate your understanding of logging and auditing:
a Briefly discuss and contrast the similar and different approaches to security logging in Windows and in Linux.
Note: Your discussion should be brief and focus on the process of logging log files, and relevant logging tools. I will expect to see a mention of at least some of the tools eg Event Viewer, rsyslog, rsyslog.conf, varlog etc. used and discussion about log types, classification of logs centralized logging vs distributed logging etc.
b On a Linux VM create a log file in varlog with your J number eg Jlog that collects all security related logs Set logrotate to rotate all logs including the new log every hour. Compress the rotated new log change its permission to and email it to yourself. Document and discuss the process you have taken using some screenshots.
Step by Step Solution
There are 3 Steps involved in it
1 Expert Approved Answer
Step: 1 Unlock
Question Has Been Solved by an Expert!
Get step-by-step solutions from verified subject matter experts
Step: 2 Unlock
Step: 3 Unlock
