Other Resources

    Reports for Unix Environment


    EventLog Analyzer offers the following canned reports under various categories for Unix events:

     

    Unix

    • Unix Logon Reports
    • Unix Logoff Reports
    • Unix Failed Logon Reports
    • Unix User Account Management
    • Unix Removable Disk Auditing
    • SU Commands
    • Unix Mail Server Reports
    • Unix Threats
    • Unix NFS Events
    • Unix Other Events
    • Unix FTP Server Reports
    • Unix System Events
    • Unix Severity Reports
    • Unix Risk Reports
    • VMWare Logons/Logoff
    • VMWare System Events
    • VMWare Server Events
    • IBM iSeries (AS/400) Reports

     

    Unix Logon Reports

    • User Logons
    • SU Logons
    • SSH Logons
    • FTP or SFTP Logons
    • Logons Overview
    • Top logons based on users
    • Top logons based on hosts
    • Top logons based on remote hosts
    • Top Unix Logon Method
    • Logon Trend

    Unix Logoff Reports

    • User Logoffs
    • SU Logoffs
    • SSH Logoffs
    • FTP or SFTP Logoffs
    • Logoffs Overview

    Unix Failed Logon Reports

    • User Failed Logons
    • SU Failed Logons
    • SSH Failed Logons
    • FTP or SFTP Failed Logons
    • Failed Logons Overview
    • Top failed logons based on users
    • Top failed logons based on hosts
    • Top Failed logons based on remotehosts
    • Top failed logon methods
    • Failed Logon Trend
    • Repeated authentication failures
    • Invalid user login attempts
    • Unsuccessful logon failures with long password
    • Repeated login failure based on remote hosts
    • Repeated authentication failures based on remote hosts

    Unix User Account Management

    • Added user accounts
    • Deleted user accounts
    • Renamed user accounts
    • Groups added
    • Groups deleted
    • Groups renamed
    • Password Changes
    • Failed password changes
    • Failed user additions
    • Top Unix Account Management Events

    Unix Removable Disk Auditing

    • USB Plugged In
    • USB Plugged Out

    SUDO Commands

    • SUDO command executions
    • Failed SUDO command executions
    • Top SUDO command executions
    • Top Failed SUDO command executions

    Unix Mail Server Reports

    • Mails Sent Overview
    • Mails Received Overview
    • Top mails sent based on senders
    • Top mails sent based on remote host
    • Top mails received from remote hosts
    • Top Sender Domain
    • Top Recipient Domain
    • Trend report on mails sent
    • Trend report on mails received
    • Top mails rejected based on sender
    • Top receivers who rejected the mails
    • Top mail rejection errors
    • Top Rejected Domains
    • Mails rejected Overview
    • MailBox Unavailable
    • Insufficient Storage
    • Bad Sequence of Commands
    • Bad Email Address
    • Non existant email address on remote side
    • Top Mail Errors
    • Top mail errors based on senders
    • Failed Mail Deliveries

    Unix Threats

    • Reverse Lookup Errors
    • Bad HostConfig Errors
    • Bad ISP Errors
    • Invalid connection remote host
    • Denial of Service Attack

    Unix NFS Events

    • Successful NFS mounts
    • Refused NFS Mounts
    • Denied NFS mounts based on users
    • Top Successful NFS mounts based on remote host
    • Top Refused NFS mounts based on remote hosts

    Unix Other Events

    • Cron Jobs
    • Cron Edit
    • Cron Job Started
    • Cron Job Terminated
    • Connection aborted by a software
    • Receive identification string
    • Session Connected
    • Session Disconnected
    • Deactivated services
    • UnSupported Protocol Version
    • Timeout While Logging
    • Failed Updates
    • HostName Mismatch Error
    • HostAddress Mismatch Error
    • Top cron jobs based on users

    Unix FTP Server Reports

    • File downloads
    • File Uploads
    • Data transfer stall timeouts
    • Login Timeouts
    • Session idle timeouts
    • No transfer timeouts
    • Connection timeouts
    • FTP Reports Overview
    • Top FTP operations based on user
    • Top FTP operations based on remote host

    Unix System Events

    • Syslog service stopped
    • Syslog service restarted
    • Low Diskspace
    • System Shutdown
    • Yum installs
    • Yum updates
    • Yum Uninstalls

    Unix Severity Reports

    • Emergency Events
    • Alert Events
    • Critical Events
    • Error Events
    • Warning Events
    • Notice Events
    • Information Events
    • Debug Events

    Unix Critical Reports

    • Criticality level of events
    • Critical reports based on event
    • Critical events based on host
    • Critical events based on remote host
    • Critical events Trend
    • Critical events Overview

    VMWare Logons/Logoff

    • User Logons
    • SU Logons
    • SSH Logons
    • SFTP Logons
    • Logons Overview
    • Top logons based on user
    • Top logons based on remote hosts
    • Failed Logon
    • Failed SU Logon
    • Failed SSH Logon
    • Failed FTP or SFTP Logon
    • Failed Logon Overview
    • Top failed logons based on users
    • Top failed logon based on remote hosts
    • User Logoff
    • SU Logoff
    • SSH Logoff
    • SFTP Logoff
    • Logoff Overview

    VMWare System Events

    • User Account Added
    • User Account Deleted
    • User Account Renamed
    • Group Added
    • Group Deleted
    • Groups Renamed
    • Password Changes
    • Password Change Failed
    • User Addition Failed
    • Syslog Service Stopped
    • Syslog Service Restarted
    • Low Diskspace
    • System Shutdown

    VMWare Server Events

    • Guest Login on VM
    • VM Created
    • VM Deleted
    • VM State Changes
    • Top VM Changes
    • VM Events Overview

    AS400 Reports

    • Logons
    • Failed Logons
    • Logoff
    • Failed Authorization
    • Authority changes
    • User Profile changes
    • Objects deleted
    • Job changes
    • Onwership changes
    • Logon failure due to invalid passwords
    • System value changes report
    • Successful Job Start
    • Successful Job End
    • Job Logs
    • Device Configuration
    • System time changes
    • Subsystem varied off workstation
    • ASP storage threshold reached
    • ASP storage limit exceeded
    • Disk Unit Errors
    • Expired system IDs report
    • Unable to write audit record
    • Disabled user profils due to maximum number of sign-on attempts
    • Report on weak battery
    • Report on battery failures
    • System password bypass period ended
    • Storage directory threshold reached
    • Report on serious storage conditions
    • Report on battery cache expiry
    • Report on i5 grace period expiry
    • Temporary IO Processor errors
    • System Processor Failure
    • Hardware Errors
    • Top logons based on users
    • Top failed logons based on users
    • Top jobs based on users