ACS (Universal Linux) Modules Management Pack

Microsoft.ACS.Linux.Universal :: 7.7.1124.0 (Management Pack)

This is the management pack to collect auditable syslogs from Universal Linux computers and write them to Security Event Log.

Summary

The Universal Linux ACS Management Pack provides the means of collecting auditable syslogs from Universal Linux Operating Systems and write them to the Windows Security Event Log.

Management Pack Elements

Classes (1)

 DisplayNameIDBase ClassAbstractHostedSingletonGroupExtensionAccessibility
Microsoft.ACS.Linux.Universal.ACSEndPointUniversal Linux ACS EndpointMicrosoft.ACS.Linux.Universal.ACSEndPointMicrosoft.ACS.Unix.ACSEndPointFalseTrueFalseFalseFalsePublic

Discoveries (1)

 DisplayNameIDTargetEnabled
Microsoft.ACS.Linux.Universal.ACSEndPoint.DiscoveryDiscover Universal Linux ACS EndpointMicrosoft.ACS.Linux.Universal.ACSEndPoint.DiscoveryMicrosoft.ACS.Unix.ACSEndPointTrue

Rules (17)

 DisplayNameIDTargetCategoryEnabledAlert Generate
Microsoft.ACS.Linux.Universal.Adding.GroupAdding Group (Universal Linux)Microsoft.ACS.Linux.Universal.Adding.GroupMicrosoft.ACS.Linux.Universal.ACSEndPointEventCollectionFalseFalse
Microsoft.ACS.Linux.Universal.Adding.UserAdding User (Universal Linux)Microsoft.ACS.Linux.Universal.Adding.UserMicrosoft.ACS.Linux.Universal.ACSEndPointEventCollectionFalseFalse
Microsoft.ACS.Linux.Universal.Adding.User.To.GroupAdding User to Group (Universal Linux)Microsoft.ACS.Linux.Universal.Adding.User.To.GroupMicrosoft.ACS.Linux.Universal.ACSEndPointEventCollectionFalseFalse
Microsoft.ACS.Linux.Universal.Console.Login.FailedFailed Console Login (Universal Linux)Microsoft.ACS.Linux.Universal.Console.Login.FailedMicrosoft.ACS.Linux.Universal.ACSEndPointEventCollectionFalseFalse
Microsoft.ACS.Linux.Universal.Console.Login.SucceededSuccessful Console Login (Universal Linux)Microsoft.ACS.Linux.Universal.Console.Login.SucceededMicrosoft.ACS.Linux.Universal.ACSEndPointEventCollectionFalseFalse
Microsoft.ACS.Linux.Universal.Deleting.GroupDeleting Group (Universal Linux)Microsoft.ACS.Linux.Universal.Deleting.GroupMicrosoft.ACS.Linux.Universal.ACSEndPointEventCollectionFalseFalse
Microsoft.ACS.Linux.Universal.Deleting.UserDeleting User (Universal Linux)Microsoft.ACS.Linux.Universal.Deleting.UserMicrosoft.ACS.Linux.Universal.ACSEndPointEventCollectionFalseFalse
Microsoft.ACS.Linux.Universal.Deleting.User.From.GroupDeleting User from Group (Universal Linux)Microsoft.ACS.Linux.Universal.Deleting.User.From.GroupMicrosoft.ACS.Linux.Universal.ACSEndPointEventCollectionFalseFalse
Microsoft.ACS.Linux.Universal.Password.Change.FailedFailed Password Change (Universal Linux)Microsoft.ACS.Linux.Universal.Password.Change.FailedMicrosoft.ACS.Linux.Universal.ACSEndPointEventCollectionFalseFalse
Microsoft.ACS.Linux.Universal.Password.Change.SucceededSuccessful Password Change (Universal Linux)Microsoft.ACS.Linux.Universal.Password.Change.SucceededMicrosoft.ACS.Linux.Universal.ACSEndPointEventCollectionFalseFalse
Microsoft.ACS.Linux.Universal.Ssh.FailedFailed ssh login (Universal Linux)Microsoft.ACS.Linux.Universal.Ssh.FailedMicrosoft.ACS.Linux.Universal.ACSEndPointEventCollectionFalseFalse
Microsoft.ACS.Linux.Universal.Ssh.SucceededSuccessful ssh login (Universal Linux)Microsoft.ACS.Linux.Universal.Ssh.SucceededMicrosoft.ACS.Linux.Universal.ACSEndPointEventCollectionFalseFalse
Microsoft.ACS.Linux.Universal.Su.FailedFailed su (Universal Linux)Microsoft.ACS.Linux.Universal.Su.FailedMicrosoft.ACS.Linux.Universal.ACSEndPointEventCollectionFalseFalse
Microsoft.ACS.Linux.Universal.Su.SucceededSuccessful su (Universal Linux)Microsoft.ACS.Linux.Universal.Su.SucceededMicrosoft.ACS.Linux.Universal.ACSEndPointEventCollectionFalseFalse
Microsoft.ACS.Linux.Universal.Sudo.FailedFailed sudo (Universal Linux)Microsoft.ACS.Linux.Universal.Sudo.FailedMicrosoft.ACS.Linux.Universal.ACSEndPointEventCollectionFalseFalse
Microsoft.ACS.Linux.Universal.Sudo.InvalidInvalid sudo (Universal Linux)Microsoft.ACS.Linux.Universal.Sudo.InvalidMicrosoft.ACS.Linux.Universal.ACSEndPointEventCollectionFalseFalse
Microsoft.ACS.Linux.Universal.Sudo.SucceededSuccessful sudo (Universal Linux)Microsoft.ACS.Linux.Universal.Sudo.SucceededMicrosoft.ACS.Linux.Universal.ACSEndPointEventCollectionFalseFalse