Solaris BSM log software

I'm looking for a software to capture my systems logs, and bsm (basic security module) logs to centralise the administration. Do you have a suggestions. Opensource or not.

You can use syslog to centralize logging of server messages - you may also get the BSM but since I've never played with it, I really don't have a clue. :slight_smile:

From Sunsolve:

If you are using Solaris 10 you can use the audit_syslog(5) plugin to forward your audit events to syslog, and then you can send them to your regular syslog server.

For more information, see http://auditanalyzer.com/auditing/solaris/\#syslog

Is there an audit_syslog plugin or third party app for sol 9?

No, the audit_syslog plugin only works for Solaris 10. If you feel adventurous you could try to backport auditd to Solaris 9.

And as far as I know, there is no 3rd part application to do this either.

Ok, thank you much. I didn't think there were, as I have been looking for a little while.

If there is enough interest we might backport it to Solaris 9, but there are sooo many other things we have to finish before we can look into that...