ACS (AIX 7) Modules Management Pack

Microsoft.ACS.AIX.7 :: 7.5.1005.0 (Management Pack)

This is the management pack to collect auditable syslogs from UNIX/Linux (AIX 7) computer and write them to Security Event Log.

Summary

The AIX 7 ACS Management Pack provides the means of collecting auditable syslogs from AIX 7 Operating Systems and write them to the Windows Security Event Log.

Management Pack Elements

Classes (1)

 DisplayNameIDBase ClassAbstractHostedSingletonGroupExtensionAccessibility
Microsoft.ACS.AIX.7.ACSEndPointAIX 7 ACS EndpointMicrosoft.ACS.AIX.7.ACSEndPointMicrosoft.ACS.Unix.ACSEndPointFalseTrueFalseFalseFalsePublic

Discoveries (1)

 DisplayNameIDTargetEnabled
Microsoft.ACS.AIX.7.ACSEndPoint.DiscoveryDiscover AIX 7 ACS EndpointMicrosoft.ACS.AIX.7.ACSEndPoint.DiscoveryMicrosoft.ACS.Unix.ACSEndPointTrue

Rules (10)

 DisplayNameIDTargetCategoryEnabledAlert Generate
Microsoft.ACS.AIX.7.Console.FailedFailed Console Login (AIX 7)Microsoft.ACS.AIX.7.Console.FailedMicrosoft.ACS.AIX.7.ACSEndPointEventCollectionFalseFalse
Microsoft.ACS.AIX.7.Console.InvalidInvalid Console Login (AIX 7)Microsoft.ACS.AIX.7.Console.InvalidMicrosoft.ACS.AIX.7.ACSEndPointEventCollectionFalseFalse
Microsoft.ACS.AIX.7.Ssh.FailedFailed ssh login (AIX 7)Microsoft.ACS.AIX.7.Ssh.FailedMicrosoft.ACS.AIX.7.ACSEndPointEventCollectionFalseFalse
Microsoft.ACS.AIX.7.Ssh.InvalidInvalid ssh login (AIX 7)Microsoft.ACS.AIX.7.Ssh.InvalidMicrosoft.ACS.AIX.7.ACSEndPointEventCollectionFalseFalse
Microsoft.ACS.AIX.7.Ssh.SucceededSuccessful ssh login (AIX 7)Microsoft.ACS.AIX.7.Ssh.SucceededMicrosoft.ACS.AIX.7.ACSEndPointEventCollectionFalseFalse
Microsoft.ACS.AIX.7.Su.FailedFailed su (AIX 7)Microsoft.ACS.AIX.7.Su.FailedMicrosoft.ACS.AIX.7.ACSEndPointEventCollectionFalseFalse
Microsoft.ACS.AIX.7.Su.SucceededSuccessful su (AIX 7)Microsoft.ACS.AIX.7.Su.SucceededMicrosoft.ACS.AIX.7.ACSEndPointEventCollectionFalseFalse
Microsoft.ACS.AIX.7.Sudo.FailedFailed sudo (AIX 7)Microsoft.ACS.AIX.7.Sudo.FailedMicrosoft.ACS.AIX.7.ACSEndPointEventCollectionFalseFalse
Microsoft.ACS.AIX.7.Sudo.InvalidInvalid sudo (AIX 7)Microsoft.ACS.AIX.7.Sudo.InvalidMicrosoft.ACS.AIX.7.ACSEndPointEventCollectionFalseFalse
Microsoft.ACS.AIX.7.Sudo.SucceededSuccessful sudo (AIX 7)Microsoft.ACS.AIX.7.Sudo.SucceededMicrosoft.ACS.AIX.7.ACSEndPointEventCollectionFalseFalse