auditbeat

Lightweight shipper for audit data from Linux kernel

brewmacoslinux
Try with needOr install directly
Source

About

Lightweight Shipper for Audit Data

Commands

auditbeat

Examples

Start auditbeat with default configuration$ auditbeat -e
Test configuration file validity$ auditbeat test config
Run auditbeat with custom configuration file$ auditbeat -c /etc/auditbeat/auditbeat.yml -e