Enabling file audit logging on a file system

Use this information to enable file audit logging on a file system in IBM Storage Scale.

Important:
  • Only one type of file audit logging can be enabled per file system. You can either enable file system auditing, fileset auditing, or skip fileset auditing.
  1. To enable a file system for file audit logging, run the mmaudit command.
    mmaudit Device enable
  2. To update the events being audited, filesets to audit or filesets to skip, run the mmaudit command.
    mmaudit Device update --events OPEN,CLOSE
    For more information, see the mmaudit command.
    Note:
    • If the Object protocol is enabled on the file system that contains the file audit logging fileset, ensure that additional inodes are defined for it before you enable file audit logging.
    • In an ESS environment, file audit logging must be enabled manually on non-EMS and ESS I/O nodes.
    • For more information about validating that a node is getting events after file audit logging is enabled, see Monitoring the file audit logging fileset for events.
Note: Enabling file audit logging is audited and recorded by syslog. For more information, see Audit messages for cluster configuration changes.