Enabling file audit logging on a file system
Use this information to enable file audit logging on a file system in IBM Storage Scale.
Important:
- Only one type of file audit logging can be enabled per file system. You can either enable file system auditing, fileset auditing, or skip fileset auditing.
- To enable a file system for file audit logging, run the mmaudit command.
mmaudit Device enable
- To update the events being audited, filesets to audit or filesets to skip, run the mmaudit
command.
For more information, see the mmaudit command.mmaudit Device update --events OPEN,CLOSE
Note:- If the Object protocol is enabled on the file system that contains the file audit logging fileset, ensure that additional inodes are defined for it before you enable file audit logging.
- In an ESS environment, file audit logging must be enabled manually on non-EMS and ESS I/O nodes.
- For more information about validating that a node is getting events after file audit logging is enabled, see Monitoring the file audit logging fileset for events.
Note: Enabling file audit logging is audited and recorded by
syslog. For more information, see Audit messages for cluster configuration changes.