Log Management
Check logs live (like CMtrace):
tail -f file
See kernel logs:
dmesg # On Legacy systems
journalctl –k # On systems running systemd
Useful Logs
OS logs:
/var/log/messages
/var/log/syslog
SCCM log:
/var/opt/microsoft/cm/scxcm.log
sudo log:
/var/log/sudo.log
DPKG log:
/var/log/dpkg.log
Unattended upgrade log:
/var/log/unattended-upgrades/unattended-upgrades.log
Services log:
/var/log/daemon.log
Linux security Policies log:
/var/log/ linuxsecpol.log