[sudo-users] sudo-io logs rotation, archive

Todd C. Miller Todd.Miller at courtesan.com
Mon Feb 2 13:38:09 MST 2015


When the maximum I/O log sequence number is reached, the sequence
number will wrap around and sudo will overwrite old I/O logs.  One
way to implement rotation is to define maxseq in sudoers to a smaller
value (the default is 2176782336).  There's not currently a good
way to define a maximum limit to the total size of the I/O logs,
nor is there yet support for sending I/O logs to a syslog server.

 - todd


More information about the sudo-users mailing list