timestamp of the record and the serial number are used by the user-space daemon to determine which pieces
belong to the same audit record. The tuple is unique for each syscall and lasts from syscall entry to syscall
exit. The tuple is composed of the timestamp and the serial number.
Each audit record for system calls contain the system call return code, which indicates if the call was
successful or not. The following table lists security relevant events for which an audit record is generated on
the TOE.
144
Содержание Novell 10 SP1 EAL4
Страница 1: ...SUSE Linux Enterprise Server 10 SP1 EAL4 High Level Design Version 1 2 1...
Страница 23: ...11...
Страница 29: ...17...
Страница 43: ...31...
Страница 54: ...42 Figure 5 8 New data blocks are allocated and initialized for an ext3 field...
Страница 117: ...105 Figure 5 48 Page Address Translation and access control...
Страница 125: ...113 Figure 5 54 31 bit Dynamic Address Translation with page table protection...
Страница 126: ...114 Figure 5 55 64 bit Dynamic Address Translation with page table protection...
Страница 172: ...160 Figure 5 79 System x SLES boot sequence...
Страница 214: ...202...