[Samba] how to configure vfs object = audit

Felipe Augusto van de Wiel felipe at paranacidade.org.br
Wed Aug 1 12:27:27 GMT 2007


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

Indracyd wrote, On 01-08-2007 02:50:
> Dear all, someone can help i have samba and i won to
> see activied user, open, closed, delete, rename files
> can samba do it?and i know to configured the vfs
> object = audit
> 
> this is my sample script :
> 
> [AnCtest]
>    comment = Audit and Controlling Tester
>    vfs object = audit
>    veto files =
> /*.exe/*.mp3/*.msi/*.mpeg/*.mov/*.scr/*.dat/*.wav/*.3gp
>    delete veto files = yes
>    nt acl support = yes
>    path = /data/AnCtest
>    public = no
>    browseable = no
>    valid users = @audit
>    read only = no
>    writeable = yes
>    create mask = 0760
>    force create mode = 0760
>    directory mask = 2760
>    force directory mode = 2760
>    inherit permissions = yes
> 
> but how to see the log vfs object = audit?

	For more info use 'vfs object = full_audit' (or extd_audit,
depending on your Samba version), your log messages should appear
in syslog, usually under the 'smbd_audit' module name and, at
least on my Debian system, in messages, auth.log and user.log.

	syslog-ng can change this and you might also be interested
in http://sourceforge.net/projects/smbdaudit


	Kind regards,
- --
Felipe Augusto van de Wiel <felipe at paranacidade.org.br>
Coordenadoria de Tecnologia da Informação (CTI) - SEDU/PARANACIDADE
http://www.paranacidade.org.br/           Phone: (+55 41 3350 3300)
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.6 (GNU/Linux)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iD8DBQFGsHwvCj65ZxU4gPQRCIVBAJ99OkAKLOt/bjbGbhL2uMU029rmiQCffhnE
Q4v0Kta5Sn9hejT4RrSdx1Q=
=/qMl
-----END PGP SIGNATURE-----


More information about the samba mailing list