
Severity Level
Select the lowest severity level for security events to include in the report.
The selected severity level and above are then included in the reports.
Detail
A source to which the profile has denied access. This includes capabilities
and files. You can use this field to report the resources to which profiles
prevent access.
Access Type
The access type describes what is actually happening with the security event.
The options are:
PERMITTING
,
REJECTING
, or
AUDITING
.
Mode
The Mode is the permission that the profile grants to the program or process
to which it is applied. The options are:
r
(read)
w
(write)
l
(link)
x
(execute).
Export Type
Enables you to export a CSV (comma separated values) or HTML file. The
CSV file separates pieces of data in the log entries with commas using a
standard data format for importing into table-oriented applications. You can
enter a pathname for your exported report by typing the full pathname in the
field provided.
Location to Store Log
Enables you to change the location that the exported report is store. The de-
fault location is
/var/log/apparmor/reports-exported
. When
you change this location, select Accept. Select Browse to browse the file
system.
8
To see the report, filtered as desired, select Next. One of the three reports displays.
9
Refer the following sections for detailed information about each type of report.
• For the application audit report, refer to
Section “Application Audit Report”
(page 88).
• For the security incident report, refer to
Section “Security Incident Report”
(page 89).
Managing Profiled Applications
87
Содержание APPARMOR 1.2
Страница 1: ...Novell AppArmor Powered by Immunix Administration Guide www novell com 1 2 09 29 2005...
Страница 4: ......
Страница 14: ......
Страница 116: ......
Страница 128: ......