What is go-audit

A tool for monitoring and managing device compliance and security across multiple platforms

About go-audit: An Alternative to auditd

About go-audit is an alternative to the auditd daemon that is included with many Linux distributions. After developing an auditd audisp plugin to convert audit logs into JSON format, I became interested in creating a replacement for the existing daemon. Goals: - Safe: Written in a modern programming language that ensures type safety and high performance. - Fast: Designed to avoid blocking whenever possible. - Outputs JSON: Supports JSON output format. - Pluggable pipelines: Can send output to syslog, local files, Graylog2, or stdout. Additional output options can be easily added. Connects to the Linux kernel using netlink. Usage: - Installation: To install, you need golang version 1.14 or greater. Clone the repository, build the binary, and place the go-audit binary in your desired location. - Testing: Execute the unit test suite, review code coverage results, run the benchmark test suite, and conduct benchmark tests with CPU profiling and garbage collection monitoring. - Running as a service: Refer to the contrib folder for examples on how to properly run go-audit as a service.
 

go-audit Reviews

Write a Review

No reviews yet. Be the first to review this tool!

Write a Review

Share your experience with go-audit tool and help others make informed decisions.

Featured Tools

Specops Software
Free

Specops Software View Specops Software

Specops Software empowers organizations to fortify their IT security by addressing the critical vulnerability of password management and authentication. As a premier vendor, Specops Software provides advanced solutions designed to proactively block weak passwords, enforce robust authentication protocols, and ensure compliance with stringent industry standards like CJIS and HITRUST. With deep native integration into Active Directory and on-premises data storage, Specops Software offers unparalleled security and control for sensitive business data.

Active Directory password policy auditing against compliance standards
Breached password detection for over 900 million known compromised passwords
Zero-trust access evaluation and enhancement
Infisical
Free

Infisical View Infisical

Infisical is the premier open-source platform designed for unified management of secrets, certificates, and configurations across your entire organization. It seamlessly integrates into your development workflows, CI/CD pipelines, and cloud infrastructure, ensuring secure storage and automated injection of sensitive information. Empower your team with robust features like versioning, point-in-time recovery, comprehensive audit logging, and automated secret rotation for enhanced security and operational efficiency.

Open-source secrets management platform
Unified management of secrets, certificates, and configs
Seamless integration with development workflows and CI/CD
Click Studios
Free

Click Studios View Click Studios

Click Studios is an Australian-based Agile software development company dedicated to evolving Passwordstate, their robust Enterprise Password Management solution. Continuously refined through customer insights and cybersecurity advancements, Passwordstate offers advanced features for secure sensitive information management and stringent compliance. Click Studios provides scalable, secure, and user-friendly password management solutions, empowering businesses globally with affordable and reliable access control.

Secure Enterprise Password Management
Continuous Feature Enhancement
Customer Feedback Driven Development

Similar Tools

Trend Vision One - Endpoint Security
Free

Trend Vision One - Endpoint Security

AhnLab PLUS is a unified security platform providing comprehensive cybersecurity solutions for businesses.

Absolute Control
Free

Absolute Control

Comprehensive endpoint protection solution providing advanced threat detection, proactive defense, and efficient management.

OSSEC
Free

OSSEC View OSSEC

OSSEC is a robust, open-source Host-based Intrusion Detection System (HIDS) designed for comprehensive security monitoring and analysis across diverse platforms. Its advanced capabilities include deep log analysis, file integrity verification, rootkit detection, and real-time alerting, ensuring continuous protection against threats. OSSEC excels at centralized policy enforcement and active response, making it an indispensable tool for maintaining robust security postures in complex IT environments.

Scalable, multi-platform Host-based Intrusion Detection System (HIDS)
Advanced log analysis and correlation engine
File integrity checking and monitoring
ClamAV
Free

ClamAV View ClamAV

ClamAV is a robust, open-source antivirus engine designed for comprehensive threat detection across diverse environments. Its versatile architecture is ideal for defending email gateways, web servers, and endpoints from malware, viruses, and other malicious threats. Optimized for scalability and performance, ClamAV offers a flexible multi-threaded daemon, efficient command-line tools, and automated signature updates, establishing itself as the de facto standard for secure email and network infrastructure.

Open-source Antivirus Engine
Email Gateway Scanning
Web Server Protection
Zeek Agent
Free

Zeek Agent

AhnLab PLUS is a unified security platform providing comprehensive cybersecurity solutions for businesses.

YARA-Endpoint
Free

YARA-Endpoint

The official security guide for Red Hat Enterprise Linux 7, providing detailed information on securing the operating system.