
Using reports, you can read important Novell AppArmor security events reported in
the log files without manually sifting through the cumbersome messages only useful
to the logprof tool. You can narrow down the size of the report by filtering by date
range or program name. You can also export an
html
or
csv
file.
The following are the three types of reports available in Novell AppArmor:
Executive Security Summary
A combined report, consisting of one or more security incident reports from one
or more machines. This report can provide a single view of security events on
multiple machines. For more details, refer to
Section “Executive Security Summary”
(page 91).
Application Audit Report
An auditing tool that reports which application servers are running and whether
the applications are confined by AppArmor. Application servers are applications
that accept incoming network connections. For more details, refer to
Section “Ap-
plication Audit Report”
(page 88).
Security Incident Report
A report that displays application security for a single host. It reports policy viola-
tions for locally confined applications during a specific time period. You can edit
and customize this report or add new versions. For more details, refer to
Section
“Security Incident Report”
(page 89).
To use the Novell AppArmor reporting features, proceed with the following steps:
1
To run reports, open YaST → Novell AppArmor. The Novell AppArmor interface
opens.
82
Содержание APPARMOR 1.2
Страница 1: ...Novell AppArmor Powered by Immunix Administration Guide www novell com 1 2 09 29 2005...
Страница 4: ......
Страница 14: ......
Страница 116: ......
Страница 128: ......