auditdistd (distributed audit daemon) to the build: - Manual cross references - Makefile for auditdistd - rc.d script, rc.conf entrie - New group and user for auditdistd; associated aliases, etc. The audit trail distribution daemon provides reliable, cryptographically protected (and sandboxed) delivery of audit tails from live clients to audit server hosts in order to both allow centralised analysis, and improve resilience in the event of client compromises: clients are not permitted to change trail contents after submission. Submitted by: pjd Sponsored by: The FreeBSD Foundation (auditdistd)
101 lines
1.7 KiB
Plaintext
101 lines
1.7 KiB
Plaintext
# $FreeBSD$
|
|
#
|
|
# Please see the file src/etc/mtree/README before making changes to this file.
|
|
#
|
|
|
|
/set type=dir uname=root gname=wheel mode=0755
|
|
.
|
|
account
|
|
..
|
|
at
|
|
/set uname=daemon
|
|
jobs
|
|
..
|
|
spool
|
|
..
|
|
/set uname=root
|
|
..
|
|
/set mode=0750
|
|
/set gname=audit
|
|
audit
|
|
..
|
|
dist uname=auditdistd gname=audit mode=0770
|
|
..
|
|
remote uname=auditdistd gname=wheel mode=0700
|
|
..
|
|
/set gname=wheel
|
|
backups
|
|
..
|
|
cache
|
|
..
|
|
crash
|
|
..
|
|
cron
|
|
tabs mode=0700
|
|
..
|
|
..
|
|
/set mode=0755
|
|
db
|
|
entropy uname=operator gname=operator mode=0700
|
|
..
|
|
freebsd-update mode=0700
|
|
..
|
|
ipf mode=0700
|
|
..
|
|
pkg
|
|
..
|
|
ports
|
|
..
|
|
portsnap
|
|
..
|
|
..
|
|
empty mode=0555 flags=schg
|
|
..
|
|
games gname=games mode=0775
|
|
..
|
|
heimdal mode=0700
|
|
..
|
|
log
|
|
..
|
|
mail gname=mail mode=0775
|
|
..
|
|
msgs uname=daemon
|
|
..
|
|
named
|
|
..
|
|
preserve
|
|
..
|
|
run
|
|
named uname=bind gname=bind
|
|
..
|
|
ppp gname=network mode=0770
|
|
..
|
|
wpa_supplicant
|
|
..
|
|
..
|
|
rwho gname=daemon mode=0775
|
|
..
|
|
spool
|
|
lock uname=uucp gname=dialer mode=0775
|
|
..
|
|
/set gname=daemon
|
|
lpd
|
|
..
|
|
mqueue
|
|
..
|
|
opielocks mode=0700
|
|
..
|
|
output
|
|
lpd
|
|
..
|
|
..
|
|
/set gname=wheel
|
|
..
|
|
tmp mode=01777
|
|
vi.recover mode=01777
|
|
..
|
|
..
|
|
yp
|
|
..
|
|
..
|