sat_summarize(1M)
sat_summarize - generate statistics on a stream of audit records
As shipped in IRIX 6.5. First release of IRIX 6.5.
NAME sat_summarize - generate statistics on a stream of audit records SYNOPSIS /bin/sat_summarize [ -t ] [ -e ] [ -u ] [ -o ] [ -v ] [ infile ] DESCRIPTION sat_summarize prints a statistical summary of the audit trail to the standard error device. Data is displayed either when end of file is reached on input or when sat_summarize receives the SIGUSR1 signal. Run time options determine which statistics are presented. OPTIONS -t Print average rate of audit trail generation, in records per minute, and number of audit records generated in the last minute. -e Display numbers of audit records found, by event type. -u Display numbers of audit records found, by user. -o Input (whether standard input or file input) is copied to standard output. This option makes it possible to use sat_summarize as one of a chain of audit tools connected by pipes. -v By default, zero valued entries from user or event lists are not printed. The verbose option enables printing of zero valued entries. infile Data is taken from infile. If infile is not specified, data is taken, by default, from the standard input. The format of infile is identical to the output generated by satd(1M) and sat_reduce(1M). DEFAULT If no arguments are given, -e is assumed. sat_summarize displays the numbers of audit records, broken down by event type. EXAMPLE sat_summarize is ordinarily used in combination with other audit filters. To obtain audit records and display a complete statistical summary, execute this command sequence: satd -o -f /var/adm/sat | sat_summarize -t -e -u SEE ALSO audit(1M), kill(1), sat_interpret(1M), sat_reduce(1M), sat_select(1M), satd(1M). IRIX Admin: Backup, Security, and Accounting