sat_summarize(1M)

sat_summarize - generate statistics on a stream of audit records

As shipped in IRIX 6.5. First release of IRIX 6.5.

NAME
     sat_summarize - generate statistics on a stream of audit records

SYNOPSIS
     /bin/sat_summarize [ -t ] [ -e ] [ -u ] [ -o ] [ -v ] [ infile ]

DESCRIPTION
     sat_summarize prints a statistical summary of the audit trail to the
     standard error device.  Data is displayed either when end of file is
     reached on input or when sat_summarize receives the SIGUSR1 signal.

     Run time options determine which statistics are presented.

OPTIONS
     -t       Print average rate of audit trail generation, in records per
              minute, and number of audit records generated in the last
              minute.

     -e       Display numbers of audit records found, by event type.

     -u       Display numbers of audit records found, by user.

     -o       Input (whether standard input or file input) is copied to
              standard output.  This option makes it possible to use
              sat_summarize as one of a chain of audit tools connected by
              pipes.

     -v       By default, zero valued entries from user or event lists are not
              printed.  The verbose option enables printing of zero valued
              entries.

     infile   Data is taken from infile.  If infile is not specified, data is
              taken, by default, from the standard input.  The format of
              infile is identical to the output generated by satd(1M) and
              sat_reduce(1M).

DEFAULT
     If no arguments are given, -e is assumed.  sat_summarize displays the
     numbers of audit records, broken down by event type.

EXAMPLE
     sat_summarize is ordinarily used in combination with other audit filters.
     To obtain audit records and display a complete statistical summary,
     execute this command sequence:

          satd -o -f /var/adm/sat | sat_summarize -t -e -u


SEE ALSO
     audit(1M), kill(1), sat_interpret(1M), sat_reduce(1M), sat_select(1M),
     satd(1M).
     IRIX Admin: Backup, Security, and Accounting