UNIX/Linux Audit Event Log Line Example

The following is an example of a UNIX/Linux audit event. Centrify audit event information is highlighted in red.

Apr 4 21:04:15 engcen6 adclient[1749]: INFO 
AUDIT_TRAIL|Centrify Suite|Centrify sshd|1.0|100|SSHD granted|5|user= dwirth(type:ad,dwirth@CENTRIFY.VMS) pid=7456 utc=1459784055479 centrifyEventID=27100DAInst= AuditingInstallation DASessID=c72252aa-e616-44ff-a5f6 -d3f53f09bb67 status=GRANTED service=ssh-connection tty=/dev/pts/0 authMechanism=keyboard-interactive client= 192.168.81.11 sshRights=shell command=(none)