Skip to main content
Skip table of contents

MKUser Sudo Command

Classification

Rule NameRule TypeCommon EventClassification
MKUser Sudo Command ExecutedSub RuleGeneral Sudo CommandActivity
MKUser Sudo Command Not AllowedSub RuleCommand Execution FailureAccess Failure
MKUser Not In SudoersSub RuleCommand Execution FailureAccess Failure
MKUser Unable To Resolve HostSub RuleSudo Unable To Resolve HostError
MKUser Incorrect PasswordSub RuleUser Logon Failure : Bad PasswordAuthentication Failure
MKUser Sudo CommandBase RuleGeneral Sudo CommandActivity

Mapping with LogRhythm Schema  

Device Key in Log MessageLogRhythm SchemaData Type
N/A<severity>Text\String
N/A<login>Number
N/A<account>Text\String
N/A<dname>Text\String
N/A<session>Text\String
N/A<process>Text\String
N/A<object>Text\String
N/A<objectname>Text\String
N/A<group>Text\String
N/A<command>Text\String
N/A<amount>Number
N/A<tag2>Text\String
JavaScript errors detected

Please note, these errors can depend on your browser setup.

If this problem persists, please contact our support.