ELA 8.5 and Solaris 10 audit logs
Dears,
Currently, We've ELA 8.5 as log-server in our network and configured some network elements + servers with it. so normally all log information will be redirected to ELA .
I've question about ELA features ...
I'd like to know if ELA can be used as IDS system .. Actually for a Solaris10 box we've turned on the Audit log generation which means all file access, modify, delete, creation and many more will be reported and will be logged. But there is no view to categorize these kind of logs ... only raw logs are saved in ELA. and Compliant Report is always empty ...
So Compliant Report need to be configured for this purpose ? is it even possible ?
Any solution ?
Thx
New to ADSelfService Plus?