<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Monitoring Root Account on Linux Server in Alerting</title>
    <link>https://community.splunk.com/t5/Alerting/Monitoring-Root-Account-on-Linux-Server/m-p/667181#M15462</link>
    <description>Hi&lt;BR /&gt;what you already have in those servers?&lt;BR /&gt;- UF&lt;BR /&gt;- some Unix/Linux TAs&lt;BR /&gt;- what kind of data it is collection&lt;BR /&gt;- what logs it's collecting&lt;BR /&gt;- how and in which user your UF is running (shouldn't run as root).&lt;BR /&gt;r. Ismo</description>
    <pubDate>Thu, 02 Nov 2023 13:38:08 GMT</pubDate>
    <dc:creator>isoutamo</dc:creator>
    <dc:date>2023-11-02T13:38:08Z</dc:date>
    <item>
      <title>Monitoring Root Account on Linux Server</title>
      <link>https://community.splunk.com/t5/Alerting/Monitoring-Root-Account-on-Linux-Server/m-p/666682#M15440</link>
      <description>&lt;P&gt;Hi all,&lt;/P&gt;&lt;P&gt;I have a case about monitoring Linux servers. Here what i am trying to do. I am not sure this is possible or not but i have to do these things with possibilities because System Staff wanted these from me.&lt;/P&gt;&lt;P&gt;1-Root SSH access enabled servers --&amp;gt; Need Help&lt;/P&gt;&lt;P&gt;2-When someone changed sudoers file --&amp;gt; Done.&lt;/P&gt;&lt;P&gt;3-Root password change --&amp;gt; Done.&lt;/P&gt;&lt;P&gt;4-Users who have "0" ID except root --&amp;gt; Need Help&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I did some steps but i need help about 2 step. Any help would be appreciated!&lt;/P&gt;</description>
      <pubDate>Mon, 30 Oct 2023 13:23:07 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Alerting/Monitoring-Root-Account-on-Linux-Server/m-p/666682#M15440</guid>
      <dc:creator>10061987</dc:creator>
      <dc:date>2023-10-30T13:23:07Z</dc:date>
    </item>
    <item>
      <title>Re: Monitoring Root Account on Linux Server</title>
      <link>https://community.splunk.com/t5/Alerting/Monitoring-Root-Account-on-Linux-Server/m-p/667181#M15462</link>
      <description>Hi&lt;BR /&gt;what you already have in those servers?&lt;BR /&gt;- UF&lt;BR /&gt;- some Unix/Linux TAs&lt;BR /&gt;- what kind of data it is collection&lt;BR /&gt;- what logs it's collecting&lt;BR /&gt;- how and in which user your UF is running (shouldn't run as root).&lt;BR /&gt;r. Ismo</description>
      <pubDate>Thu, 02 Nov 2023 13:38:08 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Alerting/Monitoring-Root-Account-on-Linux-Server/m-p/667181#M15462</guid>
      <dc:creator>isoutamo</dc:creator>
      <dc:date>2023-11-02T13:38:08Z</dc:date>
    </item>
  </channel>
</rss>

