# # Copyright (c) 2009, 2013, Oracle and/or its affiliates. All rights reserved. token=arg:argument token=attr:attribute token=acl:acl_entry token=cmd:command token=data:data token=exec_args:exec_arguments token=exec_env:exec_environment token=group:group_object token=groups:groups token=inaddr:ip_addr token=inet:socket token=ipc:ipc token=ipc_perm:ipc_perm token=newgroup:newgroups token=path:path token=path_attr:attribute_path token=privset:privilege token=proc:process token=text:text token=tid:terminal_adr token=uauth:use_of_authorization token=upriv:use_of_privilege token=user:user_object token=zone:zonename token=fmri:service_instance token=label:mandatory_label token=head:header token=subj:subject token=ret:return token=exit:exit token=arbitrary:arbitrary token=command:command token=command_alt:command_alt token=date:date token=file:file token=iport:iport token=in_peer:in_peer token=in_remote:in_remote token=newgroups:newgroups token=opaque:opaque token=path_list:path_list token=priv_effective:priv_effective token=priv_inherit:priv_inherit token=priv_limit:priv_limit token=process:process token=return:return token=seq:seq token=socket:socket token=socket-inet:socket-inet token=subject:subject token=xclient:xclient token=zonename:zonename message=ipc_perm:The ipc and ipc_perm tokens are not included if \ the message ID is not valid. kernel=head:insert:subj:[upriv]:ret user=head:subj:insert:ret label=AUE_ACCEPT case=Invalid socket file descriptor format=arg1 comment=1, file descriptor, "so" case=If the socket address is not part of the AF_INET family format=arg1:arg2:arg3 comment=1, "so", file descriptor: comment="family", so_family: comment="type", so_type case=If the socket address is part of the AF_INET family case=...If there is no vnode for this file descriptor format=[arg]1 comment=1, file descriptor, "Bad so" case=...or if the socket is not bound format=[arg]1:[inet]2 comment=1, file descriptor, "so": comment=local/foreign address (0.0.0.0) case=...or if the socket address length = 0 format=[arg]1:[inet]2 comment=1, file descriptor, "so": comment=local/foreign address (0.0.0.0) case=...or for all other conditions format=inet1:[inet]1 comment=socket address label=AUE_ACCESS format=path1:[attr] comment=may be truncated in failure case label=AUE_ACCT case=Zero path format=arg1 comment=1, 0, "accounting off" case=Non-zero path format=path1:[attr]2 comment=may be truncated in failure case: comment=omitted if failure label=AUE_ACLSET syscall=acl format=arg1:arg2:(0..n)[acl]3 comment=2, SETACL, "cmd": comment=3, number of ACL entries, "nentries": comment=Access Control List entries label=AUE_ADJTIME format=kernel label=AUE_ASYNC_DAEMON skip=Not used label=AUE_ASYNC_DAEMON_EXIT skip=Not used label=AUE_AUDIT skip=Not used. (Placeholder for the set AUE_AUDIT_*.) label=AUE_AUDITON skip=Not used. (Placeholder for the set AUE_AUDITON_*.) label=AUE_AUDITON_GESTATE skip=Not used label=AUE_AUDITON_GETAMASK format=kernel syscall=auditon: GETAMASK label=AUE_AUDITON_GETPINFO format=kernel syscall=auditon: GETPINFO label=AUE_AUDITON_GETPINFO_ADDR format=kernel syscall=auditon: GETPINFO_ADDR label=AUE_AUDITON_GETCAR format=kernel syscall=auditon: GETCAR label=AUE_AUDITON_GETCLASS format=kernel syscall=auditon: GETCLASS label=AUE_AUDITON_GETCOND format=kernel syscall=auditon: GETCOND label=AUE_AUDITON_GETCWD format=kernel syscall=auditon: GETCWD label=AUE_AUDITON_GETKMASK format=kernel syscall=auditon: GETKMASK label=AUE_AUDITON_GETSTAT format=kernel syscall=auditon: A_GETSTAT label=AUE_AUDITON_GPOLICY format=kernel syscall=auditon: GPOLICY label=AUE_AUDITON_GQCTRL format=kernel syscall=auditon: GQCTRL label=AUE_AUDITON_GTERMID skip=Not used. label=AUE_AUDITON_SESTATE skip=Not used. label=AUE_AUDITON_SETAMASK format=[arg]1:[arg]2 comment=2, "as_success", user default audit preselection mask: comment=2, "as_failure", user default audit preselection mask syscall=auditon: SETAMASK label=AUE_AUDITON_SETCLASS format=[arg]1:[arg]2 comment=2, "ec_event", event number: comment=3, "ec_class", class mask syscall=auditon: SETCLASS label=AUE_AUDITON_SETCOND format=[arg]1 comment=3, "setcond", audit state syscall=auditon: SETCOND label=AUE_AUDITON_SETKMASK format=[arg]1:[arg]2 comment=2, "as_success", kernel non-attributable mask: comment=2, "as_failure", kernel non-attributable mask syscall=auditon: SETKMASK label=AUE_AUDITON_SETSMASK format=[arg]1:[arg]2:[arg]3 comment=3, audit session ID, "asid": comment=3, session ID mask, "as_success": comment=3, session ID mask, "as_failure" syscall=auditon: SETSMASK label=AUE_AUDITON_SETPMASK case=Valid process format=[arg]1:[arg]2:[proc] comment=3, process ID mask, "as_success": comment=3, process ID mask, "as_failure" case=Invalid process format=[arg]1:[arg]2:[arg]3 comment=3, process ID mask, "as_success": comment=3, process ID mask, "as_failure": comment=3, pid, "pid" syscall=auditon: SETPMASK label=AUE_AUDITON_SETSTAT format=kernel syscall=auditon: SETSTAT label=AUE_AUDITON_SETUMASK format=[arg]1:[arg]2:[arg]3 comment=3, audit user ID, "auid": comment=3, audit ID mask, "as_success": comment=3, audit ID mask, "as_failure" syscall=auditon: SETUMASK label=AUE_AUDITON_SPOLICY format=[arg]1 comment=1, audit policy flags, "setpolicy" syscall=auditon: SPOLICY label=AUE_AUDITON_SQCTRL format=[arg]1:[arg]2:[arg]3:[arg]4 comment=3, "aq_hiwater", queue control param.: comment=3, "aq_lowater", queue control param.: comment=3, "aq_bufsz", queue control param.: comment=3, "aq_delay", queue control param. syscall=auditon: SQCTRL label=AUE_AUDITON_STERMID skip=Not used. label=AUE_AUDITSTAT skip=Not used. label=AUE_AUDITSVC skip=Not used. label=AUE_AUDITSYS skip=Not used. (Place holder for various auditing events.) label=AUE_BIND case=Invalid socket handle format=arg1 comment=1, file descriptor, "so" case=If there is no vnode for this file descriptor case=or if the socket is not of the AF_INET family format=arg1:arg2:arg3 comment=1, file descriptor, "so": comment=1, socket family, "family": comment=1, socket type, "type" case=or for all other conditions format=arg1:inet2 comment=1, file descriptor, "so": comment=socket address label=AUE_BRANDSYS format=arg1:arg2:arg3:arg4:arg5:arg6:arg7 comment=1, command, "cmd": comment=2, command args, "arg": comment=3, command args, "arg": comment=4, command args, "arg": comment=5, command args, "arg": comment=6, command args, "arg": comment=7, command args, "arg" label=AUE_BSMSYS skip=Not used. label=AUE_CHDIR format=path:[attr] label=AUE_CHMOD format=arg1:path:[attr] comment=2, mode, "new file mode" label=AUE_CHOWN format=arg1:arg2:path3:[attr] comment=2, uid, "new file uid": comment=3, gid, "new file gid": comment=of target file/directory. label=AUE_CHROOT format=path:[attr] label=AUE_CLOCK_SETTIME format=kernel label=AUE_CLOSE format=arg1:[path]:[attr] comment=1, file descriptor, "fd" label=AUE_CONFIGKSSL case=Adding KSSL entry. format=text1:inaddr2:text3:text4 comment=opcode, KSSL_ADD_ENTRY: comment=local IP address: comment=SSL port number: comment=proxy port number case=Deleting KSSL entry. format=text1:inaddr2:text3 comment=opcode, KSSL_DELETE_ENTRY: comment=local IP address: comment=SSL port number label=AUE_CONNECT case=If there is no vnode for this file descriptor case=If the socket address is not part of the AF_INET family format=arg1:arg2:arg3 comment=1, file descriptor, "so": comment=1, socket family, "family": comment=1, socket type, "type" case=If the socket address is part of the AF_INET family format=arg1:inet2 comment=1, file descriptor, "so": comment=socket address label=AUE_CORE syscall=none title=process dumped core see=none format=path:[attr]:arg1 comment=1, signal, "signal" label=AUE_CREAT format=path:[attr] label=AUE_CRYPTOADM title=kernel cryptographic framework format=text1:(0..n)[text]2 comment=cryptoadm command/operation: comment=mechanism list label=AUE_DOORFS skip=Not used. (Place holder for set of door audit events.) label=AUE_DOORFS_DOOR_BIND skip=Not used. syscall=doorfs: DOOR_BIND label=AUE_DOORFS_DOOR_CALL format=arg1:proc2 comment=1, door ID, "door ID": comment=for process that owns the door syscall=doorfs: DOOR_CALL label=AUE_DOORFS_DOOR_CREATE format=arg1 comment=1, door attributes, "door attr" syscall=doorfs: DOOR_CREATE label=AUE_DOORFS_DOOR_CRED skip=Not used. syscall=doorfs: DOOR_CRED label=AUE_DOORFS_DOOR_INFO skip=Not used. syscall=doorfs: DOOR_INFO label=AUE_DOORFS_DOOR_RETURN format=kernel syscall=doorfs: DOOR_RETURN label=AUE_DOORFS_DOOR_REVOKE format=arg1 comment=1, door ID, "door ID" syscall=doorfs: DOOR_REVOKE label=AUE_DOORFS_DOOR_UNBIND skip=Not used. syscall=doorfs: DOOR_UNBIND label=AUE_DUP2 skip=Not used. label=AUE_ENTERPROM title=enter prom syscall=none format=head:text1:ret comment="kmdb" label=AUE_EXEC format=path:[attr]1:[exec_args]2:[exec_env]3 comment=omitted on error: comment=output if argv policy is set: comment=output if arge policy is set label=AUE_EXECVE format=path:[attr]1:[exec_args]2:[exec_env]3 comment=omitted on error: comment=output if argv policy is set: comment=output if arge policy is set label=AUE_PFEXEC format=path1:path2:[privset]3:[privset]3:[proc]4:exec_args:[exec_env]5 comment=pathname of the executable: comment=pathname of working directory: comment=privileges if the limit or inheritable set are changed: comment=process if ruid, euid, rgid or egid is changed: comment=output if arge policy is set label=AUE_EXIT format=arg1:[text]2 comment=1, exit status, "exit status": comment=event aborted label=AUE_EXITPROM title=exit prom syscall=none format=head:text1:ret comment="kmdb" label=AUE_EXPORTFS skip=Not used. label=AUE_FACCESSAT see=access(2) format=path:[attr] label=AUE_FACLSET syscall=facl case=Invalid file descriptor format=arg1:arg2 comment=2, SETACL, "cmd": comment=3, number of ACL entries, "nentries" case=Zero path format=arg1:arg2:arg3:[attr]:(0..n)[acl]4 comment=2, SETACL, "cmd": comment=3, number of ACL entries, "nentries": comment=1, file descriptor, "no path: fd": comment=ACLs case=Non-zero path format=arg1:arg2:path:[attr]:(0..n)[acl]3 comment=2, SETACL, "cmd": comment=3, number of ACL entries, "nentries": comment=ACLs label=AUE_FCHDIR format=[path]:[attr] label=AUE_FCHMOD case=With a valid file descriptor and path format=arg1:path:[attr] comment=2, mode, "new file mode" case=With a valid file descriptor and invalid path format=arg1:[arg]2:[attr] comment=2, mode, "new file mode": comment=1, file descriptor, "no path: fd" case=With an invalid file descriptor format=arg1 comment=2, mode, "new file mode" label=AUE_FCHOWN case=With a valid file descriptor format=arg1:arg2:[path]:[attr] comment=2, uid, "new file uid": comment=3, gid, "new file gid" case=With an invalid file descriptor format=arg1:arg2:[arg]3:[attr] comment=2, uid, "new file uid": comment=3, gid, "new file gid": comment=1, file descriptor, "no path fd" label=AUE_FCHOWNAT skip=Not used. label=AUE_FCHROOT format=[path]:[attr] label=AUE_FCNTL case=With a valid file descriptor format=arg1:[arg]2:path:attr comment=2, command, "cmd": comment=3, flags, "flags" case=With an invalid file descriptor format=arg1:[arg]2:arg3 comment=2, command, "cmd": comment=3, flags, "flags": comment=1, file descriptor, "no path fd" note=Flags are included only when cmd is F_SETFL. label=AUE_FLOCK skip=Not used. label=AUE_FORKALL format=[arg]1 comment=0, pid, "child PID" note=The forkall(2) return values are undefined because the audit record note=is produced at the point that the child process is spawned. label=AUE_FORK1 format=[arg]1 comment=0, pid, "child PID" note=The fork1(2) return values are undefined because the audit record note=is produced at the point that the child process is spawned. label=AUE_FSAT skip=Not used. (Placeholder for AUE_*AT records) label=AUE_FSTAT skip=Not used. label=AUE_FSTATAT format=path:[attr] label=AUE_FSTATFS case=With a valid file descriptor format=[path]:[attr] case=With an invalid file descriptor format=arg1 comment=1, file descriptor, "no path fd" label=AUE_FTRUNCATE skip=Not used. label=AUE_FUSERS syscall=utssys: UTS_FUSERS format=path:attr label=AUE_FUTIMESAT format=[path]:[attr] label=AUE_GETAUDIT format=kernel label=AUE_GETAUDIT_ADDR format=kernel label=AUE_GETAUID format=kernel label=AUE_GETDENTS skip=Not used. label=AUE_GETKERNSTATE skip=Not used. label=AUE_GETMSG case=With a valid file descriptor format=arg1:[path]:attr:arg2 comment=1, file descriptor, "fd": comment=4, priority, "pri" case=With an invalid file descriptor format=arg1:arg2 comment=1, file descriptor, "fd": comment=4, priority, "pri" label=AUE_GETPMSG case=With a valid file descriptor format=arg1:[path]:attr comment=1, file descriptor, "fd" case=With an invalid file descriptor format=arg1 comment=1, file descriptor, "fd" label=AUE_GETPORTAUDIT skip=Not used. label=AUE_GETUSERAUDIT skip=Not used. label=AUE_INST_SYNC format=arg1 comment=2, flags value, "flags" label=AUE_IOCTL case=With an invalid file descriptor format=arg1:arg2:arg3 comment=1, file descriptor, "fd": comment=2, command, "cmd": comment=3, arg, "arg" case=With a valid file descriptor format=path:[attr]:arg1:arg2 comment=2, ioctl cmd, "cmd": comment=3, ioctl arg, "arg" case=Non-file file descriptor format=arg1:arg2:arg3 comment=1, file descriptor, "fd": comment=2, ioctl cmd, "cmd": comment=3, ioctl arg, "arg" case=Bad file name format=arg1:arg2:arg3 comment=1, file descriptor, "no path: fd": comment=2, ioctl cmd, "cmd": comment=3, ioctl arg, "arg" label=AUE_JUNK skip=Not used. label=AUE_KILL case=Valid process format=arg1:[proc] comment=2, signo, "signal" case=Zero or negative process format=arg1:arg2 comment=2, signo, "signal": comment=1, pid, "pid" label=AUE_KILLPG skip=Not used. label=AUE_SIGQUEUE case=Valid process format=arg1:[proc] comment=2, signo, "signal" case=Zero or negative process format=arg1:arg2 comment=2, signo, "signal": comment=1, pid, "pid" label=AUE_LCHOWN format=arg1:arg2:path:[attr] comment=2, uid, "new file uid": comment=3, gid, "new file gid" label=AUE_LINK format=path1:[attr]:path2 comment=from path: comment=to path label=AUE_LSEEK skip=Not used. label=AUE_LSTAT format=path:[attr] label=AUE_LXSTAT skip=Not used. label=AUE_MCTL skip=Not used. label=AUE_MEMCNTL format=arg1:arg2:arg3:arg4:arg5:arg6 comment=1, base address, "base": comment=2, length, "len": comment=3, command, "cmd": comment=4, command args, "arg": comment=5, command attributes, "attr": comment=6, 0, "mask" label=AUE_MKDIR format=arg1:path:[attr] comment=2, mode, "mode" label=AUE_MKNOD format=arg1:arg2:path:[attr] comment=2, mode, "mode": comment=3, dev, "dev" label=AUE_MMAP case=With a valid file descriptor format=arg1:arg2:[path]3:[attr] comment=1, segment address, "addr": comment=2, segment address, "len": comment=if no path, then argument: \ 1, "nopath: fd", file descriptor case=With an invalid file descriptor format=arg1:arg2:arg3 comment=1, segment address, "addr": comment=2, segment address, "len": comment=1, file descriptor, "no path: fd" label=AUE_MODADDMAJ title=modctl: bind module syscall=modctl format=[text]1:[text]2:text3:arg4:(0..n)[text]5 comment=driver major number: comment=driver name: comment=driver major number or "no drvname": comment=5, number of aliases, "": comment=aliases label=AUE_MODADDPRIV format=kernel label=AUE_MODCONFIG skip=Not used. label=AUE_MODCTL skip=Not used. (placeholder) label=AUE_MODDEVPLCY syscall=modctl title=modctl: set device policy case=If unknown minor name/pattern format=arg1:arg2:arg3:arg4:arg5 comment=2, "major", major number: comment=2, "lomin", low minor number, if known: comment=2, "himin", hi minor number, if known: comment=privileges required for reading: comment=privileges required for writing case=else format=arg1:text2:arg3:arg4 comment=2, "major", major number: comment=minor name/pattern: comment=privileges required for reading: comment=privileges required for writing label=AUE_MODLOAD syscall=modctl title=modctl: load module format=[text]1:text2 comment=default path: comment=filename path label=AUE_MODUNLOAD syscall=modctl title=modctl: unload module format=arg1 comment=1, module ID, "id" label=AUE_MOUNT case=UNIX file system format=arg1:text2:path:[attr] comment=3, flags, "flags": comment=filesystem type case=NFS file system format=arg1:text2:text3:arg4:path:[attr] comment=3, flags, "flags": comment=filesystem type: comment=host name: comment=3, flags, "internal flags" label=AUE_MSGCTL format=arg1:[ipc]:[ipc_perm] comment=1, message ID, "msg ID" note=ipc_perm label=AUE_MSGCTL_RMID format=arg1:[ipc]:[ipc_perm] comment=1, message ID, "msg ID" note=ipc_perm syscall=msgctl: IPC_RMID label=AUE_MSGCTL_SET format=arg1:[ipc]:[ipc_perm] comment=1, message ID, "msg ID" note=ipc_perm syscall=msgctl: IPC_SET label=AUE_MSGCTL_STAT format=arg1:[ipc]:[ipc_perm] comment=1, message ID, "msg ID" note=ipc_perm syscall=msgctl: IPC_STAT label=AUE_MSGGET format=arg1:ipc comment=1, message key, "msg key" note=ipc_perm syscall=msgget label=AUE_MSGGETL skip=Not used. label=AUE_MSGRCV format=arg1:[ipc]:[ipc_perm] comment=1, message ID, "msg ID" note=ipc_perm syscall=msgrcv label=AUE_MSGRCVL skip=Not used. label=AUE_MSGSND format=arg1:[ipc]:[ipc_perm] comment=1, message ID, "msg ID" note=ipc_perm syscall=msgsnd label=AUE_MSGSNDL skip=Not used. label=AUE_MSGSYS skip=Not used. (Placeholder for AUE_MSG* events.) label=AUE_MUNMAP format=arg1:arg2 comment=1, address of memory, "addr": comment=2, memory segment size, "len" label=AUE_NFS skip=Not used. label=AUE_NFSSVC_EXIT skip=Not used. label=AUE_NFS_GETFH skip=Not used. label=AUE_NFS_SVC skip=Not used. label=AUE_NICE format=kernel label=AUE_NULL skip=Not used. (placeholder) label=AUE_NTP_ADJTIME format=kernel label=AUE_ONESIDE skip=Not used. label=AUE_OPEN skip=Not used. (placeholder for AUE_OPEN_*). label=AUE_OPEN_R format=path:[path_attr]:[attr] see=open(2) - read label=AUE_OPENAT_R format=path:[path_attr]:[attr] see=openat(2) label=AUE_OPEN_RC format=path:[path_attr]:[attr] see=open(2) - read,creat label=AUE_OPENAT_RC see=openat(2) format=path:[path_attr]:[attr] label=AUE_OPEN_RT format=path:[path_attr]:[attr] see=open(2) - read,trunc label=AUE_OPENAT_RT see=openat(2) format=path:[path_attr]:[attr] label=AUE_OPEN_RTC format=path:[path_attr]:[attr] see=open(2) - read,trunc,creat label=AUE_OPENAT_RTC see=openat(2) format=path:[path_attr]:[attr] label=AUE_OPEN_RW format=path:[path_attr]:[attr] see=open(2) - read,write label=AUE_OPENAT_RW see=openat(2) format=path:[path_attr]:[attr] label=AUE_OPEN_RWC format=path:[path_attr]:[attr] see=open(2) - read,write,creat label=AUE_OPENAT_RWC see=openat(2) format=path:[path_attr]:[attr] label=AUE_OPEN_RWT format=path:[path_attr]:[attr] see=open(2) - read,write,trunc label=AUE_OPENAT_RWT see=openat(2) format=path:[path_attr]:[attr] label=AUE_OPEN_RWTC format=path:[path_attr]:[attr] see=open(2) - read,write,trunc,creat label=AUE_OPENAT_RWTC see=openat(2) format=path:[path_attr]:[attr] label=AUE_OPEN_W format=path:[path_attr]:[attr] see=open(2) - write label=AUE_OPENAT_W see=openat(2) format=path:[path_attr]:[attr] label=AUE_OPEN_WC format=path:[path_attr]:[attr] see=open(2) - write,creat label=AUE_OPENAT_WC see=openat(2) format=path:[path_attr]:[attr] label=AUE_OPEN_WT format=path:[path_attr]:[attr] see=open(2) - write,trunc label=AUE_OPENAT_WT see=openat(2) format=path:[path_attr]:[attr] label=AUE_OPEN_WTC format=path:[path_attr]:[attr] see=open(2) - write,trunc,creat label=AUE_OPENAT_WTC see=openat(2) format=path:[path_attr]:[attr] label=AUE_OPEN_S format=path:[path_attr]:[attr] see=open(2) - search label=AUE_OPEN_E format=path:[path_attr]:[attr] see=open(2) - exec label=AUE_OSETPGRP skip=Not used. label=AUE_OSTAT skip=Not used. label=AUE_PATHCONF format=path:[attr] label=AUE_PIPE format=kernel label=AUE_PORTFS skip=Not used (placeholder for AUE_PORTFS_*). label=AUE_PORTFS skip=Not used (placeholder for AUE_PORTFS_*). label=AUE_PORTFS_ASSOCIATE syscall=portfs see=port_associate(3C) case=Port association via PORT_SOURCE_FILE format=[path]1:attr comment=name of the file/directory to be watched label=AUE_PORTFS_DISSOCIATE syscall=portfs see=port_dissociate(3C) case=Port disassociation via PORT_SOURCE_FILE format=kernel label=AUE_PRIOCNTLSYS syscall=priocntl see=priocntl(2) format=arg1:arg2 comment=1, priocntl version number, "pc_version": comment=3, command, "cmd" label=AUE_PROCESSOR_BIND case=No LWP/thread bound to the processor format=arg1:arg2:text3:[proc] comment=1, type of ID, "ID type": comment=2, ID value, "ID": comment="PBIND_NONE" case=With processor bound format=arg1:arg2:arg3:[proc] comment=1, type of ID, "ID type": comment=2, ID value, "ID": comment=3, processor ID, "processor_id" label=AUE_PUTMSG see=putmsg(2) format=arg1:[path]:[attr]:arg2 comment=1, file descriptor, "fd": comment=4, priority, "pri" label=AUE_PUTPMSG see=putpmsg(2) format=arg1:[path]:[attr]:arg2:arg3 comment=1, file descriptor, "fd": comment=4, priority, "pri": comment=5, flags, "flags" label=AUE_P_ONLINE format=arg1:arg2:text3 comment=1, processor ID, "processor ID": comment=2, flags value, "flags": comment=text form of flags. Values: \ P_ONLINE, P_OFFLINE, P_NOINTR, P_SPARE, P_FAULTED, P_STATUS label=AUE_QUOTACTL skip=Not used. label=AUE_READ skip=Not used. (Placeholder for AUE_READ_* events) label=AUE_READL skip=Not used. (Obsolete) label=AUE_READLINK format=path:[attr] label=AUE_READV skip=Not used (obsolete) label=AUE_READVL skip=Not used (obsolete) label=AUE_REBOOT skip=Not used. label=AUE_RECV case=If address family is AF_INET or AF_INET6 format=[arg]1:[inet] comment=1, file descriptor, "so" case=If address family is AF_UNIX and path is defined format=[path]1:[attr] comment=1, file descriptor, "so" case=If address family is AF_UNIX and path is NULL format=[path]1:[attr] comment=1, file descriptor, "no path: fd" case=If address family is other than AF_UNIX, AF_INET, AF_INET6 format=[arg]1:[arg]2:[arg]3 comment=1, file descriptor, "so": comment=1, family, "family": comment=1, type, "type" label=AUE_RECVFROM format=inet:arg1:[arg]2:inet3:arg4 comment=3, message length, "len": comment=4, flags, "flags": comment=from address: comment=6, address length, "tolen" note=The socket token for a bad socket is reported as "argument note=token (1, socket descriptor, "fd")" label=AUE_RECVMSG case=If invalid file descriptor format=arg1:arg2 comment=1, file descriptor, "so": comment=3, flags, "flags" case=If valid file descriptor and socket is AF_UNIX and no path format=arg1:[attr] comment=1, file descriptor, "no path: fd" case=If valid file descriptor and socket is AF_UNIX and path defined format=path:attr case=If valid file descriptor and socket is AF_INET or AF_INET6 case=.. if socket type is SOCK_DGRAM or SOCK_RAW or SOCK_STREAM format=arg1:arg2:inet comment=1, file descriptor, "so": comment=2, flags, "flags" case=.. if socket type is unknown format=arg1:arg2:arg3:arg4 comment=1, file descriptor, "so": comment=1, family, "family": comment=1, type, "type": comment=3, flags, "flags" label=AUE_RENAME format=path1:[attr]1:[path]2:[attr]2 comment=from name: comment=to name label=AUE_RENAMEAT format=path1:[attr]1:[path]2:[attr]2 comment=from name: comment=to name label=AUE_RFSSYS skip=Not used. label=AUE_RMDIR format=path:[attr] label=AUE_SEMCTL format=arg1:[ipc]:[ipc_perm] comment=1, semaphore ID, "sem ID" note=ipc_perm label=AUE_SEMCTL_GETALL format=arg1:[ipc]:[ipc_perm] comment=1, semaphore ID, "sem ID" note=ipc_perm syscall=semctl: GETALL label=AUE_SEMCTL_GETNCNT format=arg1:[ipc]:[ipc_perm] comment=1, semaphore ID, "sem ID" note=ipc_perm syscall=semctl: GETNCNT label=AUE_SEMCTL_GETPID format=arg1:[ipc]:[ipc_perm] comment=1, semaphore ID, "sem ID" note=ipc_perm syscall=semctl: GETPID label=AUE_SEMCTL_GETVAL format=arg1:[ipc]:[ipc_perm] comment=1, semaphore ID, "sem ID" note=ipc_perm syscall=semctl: GETVAL label=AUE_SEMCTL_GETZCNT format=arg1:[ipc]:[ipc_perm] comment=1, semaphore ID, "sem ID" note=ipc_perm syscall=semctl: GETZCNT label=AUE_SEMCTL_RMID format=arg1:[ipc]:[ipc_perm] comment=1, semaphore ID, "sem ID" note=ipc_perm syscall=semctl: IPC_RMID label=AUE_SEMCTL_SET format=arg1:[ipc]:[ipc_perm] comment=1, semaphore ID, "sem ID" note=ipc_perm syscall=semctl: IPC_SET label=AUE_SEMCTL_SETALL format=arg1:[ipc]:[ipc_perm] comment=1, semaphore ID, "sem ID" note=ipc_perm syscall=semctl: SETALL label=AUE_SEMCTL_SETVAL format=arg1:[ipc]:[ipc_perm] comment=1, semaphore ID, "sem ID" note=ipc_perm syscall=semctl: SETVAL label=AUE_SEMCTL_STAT format=arg1:[ipc]:[ipc_perm] comment=1, semaphore ID, "sem ID" note=ipc_perm syscall=semctl: IPC_STAT label=AUE_SEMGET format=arg1:[ipc_perm]:ipc comment=1, semaphore ID, "sem key" note=ipc_perm syscall=semctl: SETVAL label=AUE_SEMGETL skip=Not used. label=AUE_SEMOP format=arg1:[ipc]:[ipc_perm] comment=1, semaphore ID, "sem ID" note=ipc_perm label=AUE_SEMSYS skip=Not used. (place holder) -- defaults to a semget variant label=AUE_SEND case=If address family is AF_INET or AF_INET6 format=[arg]1:[inet] comment=1, file descriptor, "so" case=If address family is AF_UNIX and path is defined format=[path]1:[attr] comment=1, file descriptor, "so" case=If address family is AF_UNIX and path is NULL format=[path]1:[attr] comment=1, file descriptor, "no path: fd" case=If address family is other than AF_UNIX, AF_INET, AF_INET6 format=[arg]1:[arg]2:[arg]3 comment=1, file descriptor, "so": comment=1, family, "family": comment=1, type, "type" label=AUE_SENDMSG case=If invalid file descriptor format=arg1:arg2 comment=1, file descriptor, "so": comment=3, flags, "flags" case=If valid file descriptor case=...and address family is AF_UNIX and path is defined format=path:attr case=...and address family is AF_UNIX and path is NULL format=path1:attr comment=1, file descriptor, "nopath: fd" case=...and address family is AF_INET or AF_INET6, \ socket is SOCK_DGRAM, SOCK_RAW or SOCK_STREAM format=arg1:arg2:inet comment=1, file descriptor, "so": comment=3, flags, "flags" case=...and unknown address family or address family AF_INET or AF_INET6 \ and not socket SOCK_DGRAM, SOCK_RAW or SOCK_STREAM format=arg1:arg2:arg3:arg4 comment=1, file descriptor, "so": comment=1, family, "family": comment=1, type, "type": comment=1, flags, "flags" label=AUE_SENDTO case=If invalid file descriptor format=arg1:arg2 comment=1, file descriptor, "so": comment=3, flags, "flags" case=If valid file descriptor case=...and socket is AF_UNIX and path is defined format=path:attr case=...and address family is AF_UNIX and path is NULL format=path1:attr comment=1, file descriptor, "nopath: fd" case=...and address family is AF_INET or AF_INET6 format=arg1:arg2:inet comment=1, file descriptor, "so": comment=3, flags, "flags" case=...and unknown address family format=arg1:arg2:arg3:arg4 comment=1, file descriptor, "so": comment=1, family, "family": comment=1, type, "type": comment=1, flags, "flags" label=AUE_SETAUDIT case=With a valid program stack address format=arg1:arg2:arg3:arg4:arg5:arg6 comment=1, audit user ID, "auid": comment=1, terminal ID, "port": comment=1, terminal ID, "machine": comment=1, preselection mask, "as_success": comment=1, preselection mask, "as_failure": comment=1, audit session ID, "asid" case=With an invalid program stack address format=kernel label=AUE_SETAUDIT_ADDR case=With a valid program stack address format=arg1:arg2:arg3:inaddr4:arg5:arg6:arg7 comment=1, audit user ID, "auid": comment=1, terminal ID, "port": comment=1, type, "type": comment=1, terminal ID, "ip address": comment=1, preselection mask, "as_success": comment=1, preselection mask, "as_failure": comment=1, audit session ID, "asid" case=With an invalid program stack address format=kernel label=AUE_SETAUID format=arg1 comment=2, audit user ID, "auid" label=AUE_AUDITON_SETKAUDIT case=With a valid program stack address format=arg1:arg2:arg3:inaddr4:arg5:arg6:arg7 comment=3, audit user ID, "auid": comment=3, terminal ID, "port": comment=3, type, "type": comment=3, terminal ID, "ip address": comment=3, preselection mask, "as_success": comment=3, preselection mask, "as_failure": comment=3, audit session ID, "asid" case=With an invalid program stack address format=kernel syscall=auditon: SETKAUDIT label=AUE_AUDITON_GETKAUDIT format=kernel syscall=auditon: GETKAUDIT label=AUE_SETDOMAINNAME skip=Not used. (See AUE_SYSINFO) label=AUE_SETEGID format=arg1 comment=1, group ID, "gid" label=AUE_SETEUID format=arg1 comment=1, user ID, "euid" label=AUE_SETGID format=arg1 comment=1, group ID, "gid" label=AUE_SETGROUPS note=If more than NGROUPS_MAX_DEFAULT groups listed, note=no tokens are generated. case=If no groups in list format=[arg]1 comment=1, 0, "setgroups" case=If 1 or more groups in list format=(1..n)arg1 comment=1, gid, "setgroups" label=AUE_SETHOSTNAME skip=Not used. (See AUE_SYSINFO) label=AUE_SETKERNSTATE skip=Not used. label=AUE_SETPGID format=[proc]:[arg]1 comment=2, pgid, "pgid" label=AUE_SETPGRP format=kernel label=AUE_SETPRIORITY skip=Not used. label=AUE_SETPPRIV case=operation privileges off format=arg1:privset2 comment=setppriv operation: comment=privileges actually switched off case=operation privileges on format=arg1:privset2 comment=setppriv operation: comment=privileges actually switched on case=operation privileges off format=arg1:privset2:privset3 comment=setppriv operation: comment=privileges before privset: comment=privileges after privset label=AUE_SETREGID format=arg1:arg2 comment=1, real group ID, "rgid": comment=2, effective group ID, "egid" label=AUE_SETREUID format=arg1:arg2 comment=1, real user ID, "ruid": comment=2, effective user ID, "euid" label=AUE_SETRLIMIT format=kernel label=AUE_SETSID format=kernel label=AUE_SETSOCKOPT case=Invalid file descriptor format=arg1:arg2 comment=1, file descriptor, "so": comment=2, level, "level" case=Valid file descriptor case=...and socket is AF_UNIX format=path1:arg2:arg3:arg4:arg5:arg6:[arg]7:[data]8 comment=if no path, will be argument: 1, "nopath: fd", \ file descriptor: comment=1, file descriptor, "so": comment=1, family, "family": comment=1, type, "type": comment=2, protocol level, "level": comment=3, option name, "optname": comment=5, option length, "optlen": comment=option data case=...and socket is AF_INET or AF_INET6 format=arg1:arg2:arg3:[arg]4:[data]5:inet comment=1, file descriptor, "so": comment=2, protocol level, "level": comment=3, option name, "optname": comment=5, option length, "optlen": comment=option data case=...and socket adddress family is unknown format=arg1:arg2:arg3:arg4:arg5:[arg]6:[data]7 comment=1, file descriptor, "so": comment=1, family, "family": comment=1, type, "type": comment=2, protocol level, "level": comment=3, option name, "optname": comment=5, option length, "optlen": comment=option data label=AUE_SETTIMEOFDAY skip=Not used. label=AUE_SETUID syscall=setuid format=arg1 comment=1, "uid" to be set label=AUE_SETUSERAUDIT skip=Not used. label=AUE_SHMAT format=arg1:arg2:[ipc]:[ipc_perm] comment=1, shared memory ID, "shm ID": comment=2, shared mem addr, "shm addr" note=ipc_perm label=AUE_SHMCTL format=arg1:[ipc]:[ipc_perm] comment=1, shared memory ID, "shm ID" note=ipc_perm label=AUE_SHMCTL_RMID format=arg1:[ipc]:[ipc_perm] comment=1, shared memory ID, "shm ID" note=ipc_perm syscall=semctl: IPC_RMID label=AUE_SHMCTL_SET format=arg1:[ipc]:[ipc_perm] comment=1, shared memory ID, "shm ID" note=ipc_perm syscall=semctl: IPC_SET label=AUE_SHMCTL_STAT format=arg1:[ipc]:[ipc_perm] comment=1, shared memory ID, "shm ID" note=ipc_perm syscall=semctl: IPC_STAT label=AUE_SHMDT format=arg1 comment=1, shared memory address, "shm adr" label=AUE_SHMGET format=arg1:[ipc_perm]:[ipc] comment=0, shared memory key, "shm key" note=ipc_perm label=AUE_SHMGETL skip=Not used. label=AUE_SHMSYS skip=Not used. (Placeholder for shmget and shmctl*) label=AUE_SHUTDOWN case=If the socket address is invalid format=[arg]1:[text]2:[text]3 comment=1, file descriptor, "fd": comment=bad socket address: comment=bad peer address case=If the socket address is part of the AF_INET family case=..with zero file descriptor format=arg1:[arg]2:[arg]3:[arg]4 comment=1, file descriptor, "so": comment=1, family, "family": comment=1, type, "type": comment=2, how shutdown code, "how" case=...with non-zero file descriptor format=arg1:arg2:inet comment=1, file descriptor, "so": comment=2, how shutdown code, "how" case=If the socket address is AF_UNIX case=...with zero file descriptor format=path1:arg2:[arg]3:[arg]4:[arg]5 comment=If error: argument: \ 1, "no path: fd", file descriptor: comment=1, file descriptor, "so": comment=1, family, "family": comment=1, type, "type": comment=2, how shutdown code, "how" case=...with non-zero file descriptor format=path1:arg2:arg3:inet comment=If error: argument: \ 1, file descriptor, "no path: fd": comment=1, file descriptor, "so": comment=2, how shutdown code, "how" label=AUE_SOCKACCEPT syscall=getmsg: socket accept format=inet:arg1:[path]:attr:arg2 comment=1, file descriptor, "fd": comment=4, priority, "pri" label=AUE_SOCKCONFIG format=arg1:arg2:arg3:[path]4 comment=1, domain address, "domain": comment=2, type, "type": comment=3, protocol, "protocol": comment=If no path:argument -- 3, 0, "devpath" label=AUE_SOCKCONNECT syscall=putmsg: socket connect format=inet:arg1:[path]:attr:arg2 comment=1, file descriptor, "fd": comment=4, priority, "pri" label=AUE_SOCKET format=arg1:[arg]2:arg3 comment=1, socket domain, "domain": comment=2, socket type, "type": comment=3, socket protocol, "protocol" label=AUE_SOCKETPAIR skip=Not used. label=AUE_SOCKRECEIVE syscall=getmsg format=inet:arg1:[path]:attr:arg2 comment=1, file descriptor, "fd": comment=4, priority, "pri" label=AUE_SOCKSEND syscall=putmsg format=inet:arg1:[path]:attr:arg2 comment=1, file descriptor, "fd": comment=4, priority, "pri" label=AUE_STAT format=path:[attr] label=AUE_STATFS format=path:[attr] label=AUE_STATVFS format=path:[attr] label=AUE_STIME format=kernel label=AUE_SWAPON skip=Not used. label=AUE_SYMLINK format=path:text1:[attr] comment=symbolic link string label=AUE_SYSINFO note=Only SI_SET_HOSTNAME and SI_SET_SRPC_DOMAIN commands note=are currently audited. format=arg1:[text]2 comment=1, command, "cmd": comment=name label=AUE_SYSTEMBOOT title=system booted syscall=none format=head:text1 comment="booting kernel" label=AUE_TRUNCATE skip=Not used. label=AUE_UMOUNT syscall=umount: old version note=Implemented as call of the newer umount2(2). format=path:arg1:[path]:[attr] comment=2, mflag value = 0, "flags" label=AUE_UMOUNT2 syscall=umount2 format=path:arg1:[path]:[attr] comment=2, mflag value, "flags" label=AUE_UNLINK format=path:[attr] label=AUE_UNLINKAT see=openat(2) format=path:[attr] label=AUE_UNMOUNT skip=Not used. label=AUE_UTIME format=path:[attr] label=AUE_UTIMES see=futimens(2) format=path:[attr] label=AUE_VFORK format=arg1 comment=0, pid, "child PID" note=The vfork(2) return values are undefined because the audit record is note=produced at the point that the child process is spawned. label=AUE_VPIXSYS skip=Not used. label=AUE_VTRACE skip=Not used. label=AUE_WRITE format=path1:attr comment=if no path, argument -- "1, file descriptor, "no path: fd" note:An audit record is generated for write only once per file close. label=AUE_WRITEV skip=Not used. (obsolete) label=AUE_XMKNOD skip=Not used. label=AUE_XSTAT skip=Not Used. label=AUE_PF_POLICY_ADDRULE title=Add IPsec policy rule see= syscall=none format=arg1:arg2:[zone]3:[text]4 comment=Operation applied to active policy (1 is active, 0 is inactive): comment=Operation applied to global policy (1 is global, 0 is tunnel): comment=affected zone: comment=Name of target tunnel label=AUE_PF_POLICY_DELRULE title=Delete IPsec policy rule see= syscall=none format=arg1:arg2:[zone]3:[text]4 comment=Operation applied to active policy (1 is active, 0 is inactive): comment=Operation applied to global policy (1 is global, 0 is tunnel): comment=affected zone: comment=Name of target tunnel label=AUE_PF_POLICY_CLONE title=Clone IPsec policy see= syscall=none format=arg1:arg2:[zone]3:[text]4 comment=Operation applied to active policy (1 is active, 0 is inactive): comment=Operation applied to global policy (1 is global, 0 is tunnel): comment=affected zone: comment=Name of target tunnel label=AUE_PF_POLICY_FLIP title=Flip IPsec policy see= syscall=none format=arg1:arg2:[zone]3:[text]4 comment=Operation applied to active policy (1 is active, 0 is inactive): comment=Operation applied to global policy (1 is global, 0 is tunnel): comment=affected zone: comment=Name of target tunnel label=AUE_PF_POLICY_FLUSH title=Flip IPsec policy rules see= syscall=none format=arg1:arg2:[zone]3:[text]4 comment=Operation applied to active policy (1 is active, 0 is inactive): comment=Operation applied to global policy (1 is global, 0 is tunnel): comment=affected zone: comment=Name of target tunnel label=AUE_PF_POLICY_ALGS title=Update IPsec algorithms see= syscall=none format=arg1:arg2:[zone]3:[text]4 comment=Operation applied to active policy (1 is active, 0 is inactive): comment=Operation applied to global policy (1 is global, 0 is tunnel): comment=affected zone: comment=Name of target tunnel label=AUE_allocate_fail skip=Not used. program=/usr/sbin/allocate title=allocate: allocate-device failure format=(0..n)[text]1 comment=command line arguments label=AUE_allocate_succ skip=Not used. program=/usr/sbin/allocate title=allocate: allocate-device success format=(0..n)[text]1 comment=command line arguments label=AUE_at_create program=/usr/bin/at title=at: at-create crontab format=path label=AUE_at_delete program=/usr/bin/at title=at: at-delete atjob (at or atrm) format=text1:path comment="ancillary file:" filename or "bad format of at-job name" label=AUE_at_perm skip=Not used. label=AUE_create_user skip=Not used. label=AUE_cron_invoke program=/usr/sbin/cron title=cron: cron-invoke at or cron case=If issue with account find format=text1 comment="bad user" name or "user account expired" case=else format=text1:text2 comment="at-job", "batch-job", "crontab-job", "queue-job ()", \ or "unknown job type ()": comment=command label=AUE_crontab_create program=/usr/bin/crontab title=crontab: crontab created format=path label=AUE_crontab_delete program=/usr/bin/crontab title=crontab: crontab delete format=path label=AUE_crontab_mod program=/usr/bin/crontab title=crontab: crontab modify format=path label=AUE_crontab_perm skip=Not used. label=AUE_deallocate_fail skip=Not used. program=/usr/sbin/deallocate title=deallocate-device failure format=(0..n)[text]1 comment=command line arguments label=AUE_deallocate_succ skip=Not used. program=/usr/sbin/deallocate title=deallocate-device success format=(0..n)[text]1 comment=command line arguments label=AUE_delete_user skip=Not used. label=AUE_disable_user skip=Not used. label=AUE_enable_user skip=Not used. label=AUE_halt_solaris program=/usr/sbin/halt title=halt format=user label=AUE_kadmind_auth format=text1:text2:text3 comment=Op: : comment=Arg: : comment=Client: label=AUE_kadmind_unauth format=text1:text2:text3 comment=Op: : comment=Arg: : comment=Client: label=AUE_krb5kdc_as_req format=text1:text2 comment=Client: : comment=Service: label=AUE_krb5kdc_tgs_req format=text1:text2 comment=Client: : comment=Service: label=AUE_krb5kdc_tgs_req_alt_tgt format=text1:text2 comment=Client: : comment=Service: label=AUE_krb5kdc_tgs_req_2ndtktmm format=text1:text2 comment=Client: : comment=Service: label=AUE_listdevice_fail skip=Not used. title=allocate-list devices failure program=/usr/sbin/allocate format=(0..n)[text]1 comment=command line arguments label=AUE_listdevice_succ skip=Not used. title=allocate-list devices success program=/usr/sbin/allocate format=(0..n)[text]1 comment=command line arguments label=AUE_modify_user skip=Not used. label=AUE_poweroff_solaris program=/usr/sbin/poweroff title=poweroff format=user label=AUE_reboot_solaris program=/usr/sbin/reboot title=reboot format=user label=AUE_rexd program=/usr/sbin/rpc.rexd title=rpc.rexd format=[text]1:text2:text3:[text]4:[text]5 comment=error message (failure only): comment="Remote execution requested by:" hostname: comment="Username:" username: comment="User id:" user ID (failure only): comment="Command line:" command attempted label=AUE_rexecd program=/usr/sbin/rpc.rexecd title=rpc.rexecd format=[text]1:text2:text3:text4 comment=error message (failure only): comment="Remote execution requested by:" hostname: comment="Username:" username: comment="Command line:" command attempted label=AUE_rshd program=/usr/sbin/in.rshd title=in.rshd format=text1:text2:[text]3:[text]4 comment="cmd" command: comment="remote user" remote user: comment="local user" local user: comment=failure message label=AUE_shutdown_solaris title=shutdown program=/usr/ucb/shutdown format=user label=AUE_smserverd program=/usr/lib/smedia/rpc.smserverd format=[text]1:[text]2 comment=state change: comment=vid, pid, major/minor device label=AUE_uadmin_solaris title=uadmin (obsolete) program= see= format=text1:text2 comment=function code: comment=argument code label=AUE_LABELSYS_TNRH title=config Trusted Network remote host cache see=tnrh(2) syscall=labelsys: TSOL_TNRH case=With the flush command (cmd=3) format=arg1 comment=1, command, "cmd" case=With the load (cmd=1) and delete (cmd=2) commands format=arg1:inaddr2:arg3 comment=1, command, "cmd": comment=ip address of host: comment=2, prefix length, "prefix len" label=AUE_LABELSYS_TNRHTP title=config Trusted Network remote host template see=tnrhtp(2) syscall=labelsys: TSOL_TNRHTP case=With the flush command (cmd=3) format=arg1 comment=1, command, "cmd" case=With the load (cmd=1) and delete (cmd=2) commands format=arg1:text2 comment=1, command, "cmd": comment=name of template label=AUE_LABELSYS_TNMLP title=config Trusted Network multi-level port entry see=tnmlp(2) syscall=labelsys: TSOL_TNMLP case=With the flush command (cmd=3) format=arg1:text2 comment=1, command, "cmd": comment="shared", or name of zone case=With the load (cmd=1) and delete (cmd=2) commands format=arg1:text2:arg3:arg4:[arg]5 comment=1, command, "cmd": comment="shared", or name of zone: comment=2, protocol number, "proto num": comment=2, starting mlp port number, "mlp_port": comment=2, ending mlp port number, "mlp_port_upper" label=AUE_admin_authenticate title=Admin Server Authentication program=admin (various) see=SMC, WBEM, or AdminSuite format=[text]1 comment=error message label=AUE_filesystem_add title=SMC: filesystem add program=SMC server format=text1:[text]2:text3:[uauth]4:text5 comment=object name: comment=domain: comment=name_service: comment=authorization used: comment=initial values label=AUE_filesystem_delete title=SMC: filesystem delete program=SMC server format=text1:[text]2:text3:[uauth]4:text5 comment=object name: comment=domain: comment=name_service: comment=authorization used: comment=deleted values label=AUE_filesystem_modify title=SMC: filesystem modify program=SMC server format=text1:[text]2:text3:[uauth]4:text5 comment=object name: comment=domain: comment=name_service: comment=authorization used: comment=changed values label=AUE_network_add title=SMC: network add program=SMC server format=text1:[text]2:text3:[uauth]4:text5 comment=object name: comment=domain: comment=name_service: comment=authorization used: comment=initial values label=AUE_network_delete title=SMC: network delete program=SMC server format=text1:[text]2:text3:[uauth]4:text5 comment=object name: comment=domain: comment=name_service: comment=authorization used: comment=deleted values label=AUE_network_modify title=SMC: network modify program=SMC server format=text1:[text]2:text3:[uauth]4:text5 comment=object name: comment=domain: comment=name_service: comment=authorization used: comment=changed values label=AUE_printer_add title=SMC: printer add program=SMC server format=text1:[text]2:text3:[uauth]4:text5 comment=object name: comment=domain: comment=name_service: comment=authorization used: comment=initial values label=AUE_printer_delete title=SMC: printer delete program=SMC server format=text1:[text]2:text3:[uauth]4:text5 comment=object name: comment=domain: comment=name_service: comment=authorization used: comment=deleted values label=AUE_printer_modify title=SMC: printer modify program=SMC server format=text1:[text]2:text3:[uauth]4:text5 comment=object name: comment=domain: comment=name_service: comment=authorization used: comment=changed values label=AUE_role_login title=RBAC: role login program=SMC server;/usr/bin/su format=[text]1 comment=error message label=AUE_scheduledjob_add title=SMC: scheduled job add program=SMC server format=text1:[text]2:text3:[uauth]4:text5 comment=object name: comment=domain: comment=name_service: comment=authorization used: comment=initial values label=AUE_scheduledjob_delete title=SMC: scheduled job delete program=SMC server format=text1:[text]2:text3:[uauth]4:text5 comment=object name: comment=domain: comment=name_service: comment=authorization used: comment=deleted values label=AUE_scheduledjob_modify title=SMC: scheduled job modify program=SMC server format=text1:[text]2:text3:[uauth]4:text5 comment=object name: comment=domain: comment=name_service: comment=authorization used: comment=changed values label=AUE_serialport_add title=SMC: serial port add program=SMC server format=text1:[text]2:text3:[uauth]4:text5 comment=object name: comment=domain: comment=name_service: comment=authorization used: comment=initial values label=AUE_serialport_delete title=SMC: serial port delete program=SMC server format=text1:[text]2:text3:[uauth]4:text5 comment=object name: comment=domain: comment=name_service: comment=authorization used: comment=deleted values label=AUE_serialport_modify title=SMC: serial port modify program=SMC server format=text1:[text]2:text3:[uauth]4:text5 comment=object name: comment=domain: comment=name_service: comment=authorization used: comment=changed values label=AUE_uauth title=SMC: Use of Authorization program=SMC server format=uauth1:text2 comment=authorization used: comment=object name label=AUE_usermgr_add title=SMC: User Manager add program=SMC server format=text1:[text]2:text3:[uauth]4:text5 comment=object name: comment=domain: comment=name_service: comment=authorization used: comment=initial values label=AUE_usermgr_delete title=SMC: User Manager delete program=SMC server format=text1:[text]2:text3:[uauth]4:text5 comment=object name: comment=domain: comment=name_service: comment=authorization used: comment=deleted values label=AUE_usermgr_modify title=SMC: User Manager modify program=SMC server format=text1:[text]2:text3:[uauth]4:text5 comment=object name: comment=domain: comment=name_service: comment=authorization used: comment=changed values label=AUE_logout title=login: logout program=various see=login(1) format=[text]1 comment="logout" username label=AUE_init_solaris title=init program=/usr/sbin/init;/usr/sbin/init;/usr/sbin/shutdown format=[text]1 comment=init level or zone name label=AUE_login title=terminal login program=/usr/sbin/login;/usr/dt/bin/dtlogin see=login(1);dtlogin format=[text]1 comment=error message label=AUE_rlogin title=rlogin program=/usr/sbin/login see=login(1) - rlogin format=[text]1 comment=error message label=AUE_telnet title=telnet login program=/usr/sbin/login see=login(1) - telnet format=[text]1 comment=error message label=AUE_ssh program=/usr/lib/ssh/sshd format=[text]1 comment=error message label=AUE_zlogin title=zone login program=/usr/sbin/login see=zlogin(1) format=[text]1 comment=error message label=AUE_su title=su program=/usr/bin/su see=su(1M) format=[text]1 comment="user name" of failed new user/role label=AUE_passwd title=passwd program=various see=passwd(1) format=[text]1:[user]2:[uauth]3 comment=the name-service repository modified (specified by -r): comment=user if different than caller: comment=authorization required for changing another user's password or setting a newly created account's password label=AUE_screenlock program=desktop screen lock format=user label=AUE_screenunlock program=desktop screen unlock format=user label=AUE_prof_cmd title=pfexec program=/usr/bin/pfexec see=pfexec(1) format=path1:path2:command:process:[priv_limit]:[priv_inherit] comment=working directory: comment=command pathname label=AUE_inetd_connect title=inetd program=/usr/sbin/inetd format=[text]1:tid2:command_alt3:priv_effective comment=service name: comment=client address: comment=inetd command label=AUE_inetd_ratelimit title=inetd program=/usr/sbin/inetd format=[text]1:text2 comment=service name: comment=limit value label=AUE_inetd_copylimit title=inetd program=/usr/sbin/inetd format=[text]1:text2 comment=service name: comment=limit value label=AUE_inetd_failrate title=inetd program=/usr/sbin/inetd format=[text]1:text2 comment=service name: comment=limit value, interval label=AUE_zone_state title=zone state change program=/usr/lib/zones/zoneadmd see=zoneadmd(1M) format=text1:zonename2:[text]3 comment=New zone state: comment=zone name: comment=error message label=AUE_su_logout title=su program=/usr/bin/su see=su(1M) format=user label=AUE_role_logout title=su program=/usr/bin/su see=su(1M) format=user label=AUE_newgrp_login program=newgrp format=text1 comment=group name label=AUE_attach program=hald format=uauth1:path2:path3:[text]4 comment=authorization used: comment=mount point: comment=device: comment=options label=AUE_detach program=hald format=uauth1:path2:path3:[text]4 comment=authorization used: comment=mount point: comment=device: comment=options label=AUE_remove program=hald format=uauth1:[path]2:path3 comment=authorization used: comment=mount point: comment=device label=AUE_pool_import program=hald format=uauth1:text2:path3 comment=authorization used: comment=pool: comment=device label=AUE_pool_export program=hald format=uauth1:text2:path3 comment=authorization used: comment=pool: comment=device label=AUE_dladm_create_secobj title=create wifi security object program=/usr/sbin/dladm see=dladm(1M) format=uauth1:text2:text3 comment=authorization used: comment=object class name: comment=object name label=AUE_dladm_delete_secobj title=delete wifi security object program=/usr/sbin/dladm see=dladm(1M) format=uauth1:text2:text3 comment=authorization used: comment=object class name: comment=object name label=AUE_file_relabel title=relabel file from one zone to another program=setlabel(1) see=setflabel(3TSOL) format=uauth1:path2:label3:label4 comment=authorization used: comment=file relabeled: comment=original label: comment=new label label=AUE_file_copy title=copy file to another zone program=dtfile(1X) format=uauth1:path2:label3:path4:label5 comment=authorization used: comment=source file: comment=source label: comment=destination directory: comment=destination label label=AUE_print_request title=TX: print request to local or remote printer program=/usr/bin/lp;/usr/bin/lpr see=lp(1);lpr(1B) format=[in_remote]1:text2:text3:path4:attr5:label6:[uauth]7 comment=IP address of remote peer system when cascade printing: comment=print request ID: comment=print destination (D): comment=file name printed (F): comment=attributes of the file printed: comment=label of the file printed: comment=authorization used label=AUE_print_request_ps title=TX: print request of PostScript file(s) program=/usr/bin/lp;/usr/bin/lpr see=lp(1);lpr(1B) format=[in_remote]1:text2:text3:path4:attr5:label6:[uauth]7 comment=IP address of remote peer system when cascade printing: comment=print request ID: comment=print destination (D): comment=file name printed (F): comment=attributes of the file printed: comment=label of the file printed: comment=authorization used label=AUE_print_request_unlabeled title=TX: print request without header/footer labels program=lp -o nolabels see=lp(1) format=[in_remote]1:text2:text3:path4:attr5:label6:[uauth]7 comment=IP address of remote peer system when cascade printing: comment=print request ID: comment=print destination (D): comment=file name printed (F): comment=attributes of the file printed: comment=label of the file printed: comment=authorization used label=AUE_print_request_nobanner title=TX: print request without a banner page program=lp -o nobanner see=lp(1) format=[in_remote]1:text2:text3:path4:attr5:label6:[uauth]7 comment=IP address of remote peer system when cascade printing: comment=print request ID: comment=print destination (D): comment=file name printed (F): comment=attributes of the file printed: comment=label of the file printed: comment=authorization used label=AUE_uadmin_shutdown title=uadmin shutdown program=/usr/sbin/uadmin;/usr/sbin/uadmin see=uadmin(1M) format=text1:[text]2 comment=next action: comment=machine dependent argument label=AUE_uadmin_reboot title=uadmin reboot program=/usr/sbin/uadmin;/usr/sbin/uadmin see=uadmin(1M) format=text1:[text]2 comment=next action: comment=machine dependent argument label=AUE_uadmin_dump title=uadmin dump program=/usr/sbin/uadmin;/usr/sbin/uadmin see=uadmin(1M) format=text1:[text]2 comment=next action: comment=machine dependent argument label=AUE_uadmin_freeze title=uadmin freeze program=/usr/sbin/uadmin;/usr/sbin/uadmin see=uadmin(1M) format=text1:[text]2 comment=next action: comment=machine dependent argument label=AUE_uadmin_remount title=uadmin remount program=/usr/sbin/uadmin;/usr/sbin/uadmin see=uadmin(1M) format=user label=AUE_uadmin_ftrace title=uadmin ftrace program=/usr/sbin/uadmin;/usr/sbin/uadmin see=uadmin(1M) format=text1:[text]2 comment=next action: comment=machine dependent argument label=AUE_uadmin_swapctl title=uadmin swapctl program=/usr/sbin/uadmin;/usr/sbin/uadmin see=uadmin(1M) format=text1 comment=next action label=AUE_uadmin_thaw title=thaw after freeze program=/usr/sbin/uadmin;/usr/sbin/uadmin see=uadmin(1M) format=text1 comment=freeze action type label=AUE_uadmin_config title=uadmin config program=/usr/sbin/uadmin;/usr/sbin/uadmin see=uadmin(1M) format=text1:[text]2 comment=next action: comment=machine dependent argument label=AUE_smbd_session title=smbd program=/usr/lib/smbsrv/smbd format=text1:text2:[text]3 comment=domain: comment=username: comment=sid label=AUE_smbd_logoff title=smbd program=/usr/lib/smbsrv/smbd format=text1:text2 comment=domain: comment=username label=AUE_vscan_quarantine title=VSCAN: quarantine infected file program=/usr/lib/vscan/vscand see=vscand(1M), ICAP RFC 3507 (Extensions) format=path1:[text]2 comment=infected file: comment=ID - threat description label=AUE_ndmp_connect title=NDMP Connect program=/usr/lib/ndmp/ndmpd see=ndmpd(1M) format=user label=AUE_ndmp_disconnect title=NDMP Disconnect program=/usr/lib/ndmp/ndmpd see=ndmpd(1M) format=user label=AUE_ndmp_backup title=NDMP Backup program=/usr/lib/ndmp/ndmpd see=ndmpd(1M) format=path1:[path]2:[in_peer]3 comment=path to be backed up: comment=local path of backup destination: comment=remote ip address and port of backup destination label=AUE_ndmp_restore title=NDMP Restore program=/usr/lib/ndmp/ndmpd see=ndmpd(1M) format=path1:[path]2:[in_peer]3 comment=path to restore to: comment=local path to restore from: comment=remote ip address and port to restore from label=AUE_smf_enable program=svc.configd(1M) see=svcadm(1M) format=uauth1:fmri2 comment=authorization used: comment=name label=AUE_smf_tmp_enable program=svc.configd(1M) see=svcadm(1M) format=uauth1:fmri2 comment=authorization used: comment=name label=AUE_smf_disable program=svc.configd(1M) see=svcadm(1M) format=uauth1:fmri2 comment=authorization used: comment=name label=AUE_smf_tmp_disable program=svc.configd(1M) see=svcadm(1M) format=uauth1:fmri2 comment=authorization used: comment=name label=AUE_smf_restart program=svc.configd(1M) see=svcadm(1M) format=uauth1:fmri2 comment=authorization used: comment=name label=AUE_smf_refresh program=svc.configd(1M) see=svcadm(1M) format=uauth1:fmri2 comment=authorization used: comment=name label=AUE_smf_clear program=svc.configd(1M) see=svcadm(1M) format=uauth1:fmri2 comment=authorization used: comment=name label=AUE_smf_degrade program=svc.configd(1M) see=svcadm(1M) format=uauth1:fmri2 comment=authorization used: comment=name label=AUE_smf_immediate_degrade program=svc.configd(1M) see=svcadm(1M) format=uauth1:fmri2 comment=authorization used: comment=name label=AUE_smf_maintenance program=svc.configd(1M) see=svcadm(1M) format=uauth1:fmri2 comment=authorization used: comment=name label=AUE_smf_immediate_maintenance program=svc.configd(1M) see=svcadm(1M) format=uauth1:fmri2 comment=authorization used: comment=name label=AUE_smf_immtmp_maintenance program=svc.configd(1M) see=svcadm(1M) format=uauth1:fmri2 comment=authorization used: comment=name label=AUE_smf_tmp_maintenance program=svc.configd(1M) see=svcadm(1M) format=uauth1:fmri2 comment=authorization used: comment=name label=AUE_smf_milestone program=svc.configd(1M) see=svcadm(1M) format=uauth1:fmri2 comment=authorization used: comment=name label=AUE_smf_create program=svc.configd(1M) see=svccfg(1M) format=uauth1:fmri2 comment=authorization used: comment=name label=AUE_smf_delcust program=svc.configd(1M) see=svccfg(1M) format=uauth1:fmri2 comment=authorization used: comment=name label=AUE_smf_delete program=svc.configd(1M) see=svccfg(1M) format=uauth1:fmri2 comment=authorization used: comment=name label=AUE_smf_unmask program=svc.configd(1M) see=svccfg(1M) format=uauth1:fmri2 comment=authorization used: comment=name label=AUE_smf_remove program=svc.configd(1M) see=svccfg(1M) format=uauth1:fmri2 comment=authorization used: comment=name label=AUE_smf_create_pg program=svc.configd(1M) see=svccfg(1M) format=uauth1:fmri:text2 comment=authorization used: comment=property group type label=AUE_smf_create_npg program=svc.configd(1M) see=svccfg(1M) format=uauth1:fmri:text2 comment=authorization used: comment=property group type label=AUE_smf_delcust_pg program=svc.configd(1M) see=svccfg(1M) format=uauth1:fmri:text2 comment=authorization used: comment=property group type label=AUE_smf_delete_pg program=svc.configd(1M) see=svccfg(1M) format=uauth1:fmri:text2 comment=authorization used: comment=property group type label=AUE_smf_unmask_pg program=svc.configd(1M) see=svccfg(1M) format=uauth1:fmri:text2 comment=authorization used: comment=property group type label=AUE_smf_remove_pg program=svc.configd(1M) see=svccfg(1M) format=uauth1:fmri:text2 comment=authorization used: comment=property group type label=AUE_smf_delete_npg program=svc.configd(1M) see=svccfg(1M) format=uauth1:fmri:text2 comment=authorization used: comment=property group type label=AUE_smf_create_snap program=svc.configd(1M) see=svccfg(1M) format=uauth1:fmri2:text3 comment=authorization used: comment=name: comment=snapshot name label=AUE_smf_delete_snap program=svc.configd(1M) see=svccfg(1M) format=uauth1:fmri2:text3 comment=authorization used: comment=name: comment=snapshot name label=AUE_smf_attach_snap program=svc.configd(1M) see=svccfg(1M) format=uauth1:fmri2:text3:fmri4:text5 comment=authorization used: comment=old name: comment=old snapshot: comment=new name: comment=new snapshot label=AUE_smf_annotation program=svc.configd(1M) see=svccfg(1M) format=text1:path2 comment=operation: comment=imported file label=AUE_smf_create_prop program=svc.configd(1M) see=svccfg(1M) format=uauth1:fmri2:text3:[text]4 comment=authorization used: comment=name: comment=type: comment=value label=AUE_smf_change_prop program=svc.configd(1M) see=svccfg(1M) format=uauth1:fmri2:text3:[text]4 comment=authorization used: comment=name: comment=type: comment=value label=AUE_smf_delcust_prop program=svc.configd(1M) see=svccfg(1M) format=uauth1:fmri2 comment=authorization used: comment=name label=AUE_smf_delete_prop program=svc.configd(1M) see=svccfg(1M) format=uauth1:fmri2 comment=authorization used: comment=name label=AUE_smf_unmask_prop program=svc.configd(1M) see=svccfg(1M) format=uauth1:fmri2 comment=authorization used: comment=name label=AUE_smf_remove_prop program=svc.configd(1M) see=svccfg(1M) format=uauth1:fmri2 comment=authorization used: comment=name label=AUE_smf_remove_bundle program=svc.configd(1M) see=svccfg(1M) format=uauth1:path2:fmri3 comment=authorization used: comment=name: comment=name label=AUE_smf_read_prop program=svc.configd(1M) see=svccfg(1M) format=uauth1:fmri2 comment=authorization used: comment=name label=AUE_cpu_ondemand title=set CPU freq to minimal unless load increases program=/usr/lib/hal/hald-addon-cpufreq see=hald(1M) format=uauth1 comment=authorization used label=AUE_cpu_performance title=set CPU freq to Max program=/usr/lib/hal/hald-addon-cpufreq see=hald(1M) format=uauth1 comment=authorization used label=AUE_cpu_threshold title=set CPU frequency threshold percentage program=/usr/lib/hal/hald-addon-cpufreq see=hald(1M) format=uauth1:text2 comment=authorization used: comment=threshold percent 1-100 label=AUE_tpm_takeownership title=TPM_TakeOwnership program=/usr/lib/tcsd see=tcsd(8) format=[text]1 comment=TPM error message label=AUE_tpm_setoperatorauth title=TPM_SetOperatorAuth program=/usr/lib/tcsd see=tcsd(8) format=[text]1 comment=TPM error message label=AUE_tpm_setownerinstall title=TPM_SetOwnerInstall program=/usr/lib/tcsd see=tcsd(8) format=[text]1 comment=TPM error message label=AUE_tpm_selftestfull title=TPM_SelfTestFull program=/usr/lib/tcsd see=tcsd(8) format=[text]1 comment=TPM error message label=AUE_tpm_certifyselftest title=TPM_CertifySelfTest program=/usr/lib/tcsd see=tcsd(8) format=[text]1 comment=TPM error message label=AUE_tpm_continueselftest title=TPM_Co ntinueSelfTest program=/usr/lib/tcsd see=tcsd(8) format=[text]1 comment=TPM error message label=AUE_tpm_ownersetdisable title=TPM_OwnerSetDisable program=/usr/lib/tcsd see=tcsd(8) format=[text]1 comment=TPM error message label=AUE_tpm_ownerclear title=TPM_OwnerClear program=/usr/lib/tcsd see=tcsd(8) format=[text]1 comment=TPM error message label=AUE_tpm_disableownerclear title=TPM_DisableOwnerClear program=/usr/lib/tcsd see=tcsd(8) format=[text]1 comment=TPM error message label=AUE_tpm_forceclear title=TPM_ForceClear program=/usr/lib/tcsd see=tcsd(8) format=[text]1 comment=TPM error message label=AUE_tpm_disableforceclear title=TPM_DisableForceClear program=/usr/lib/tcsd see=tcsd(8) format=[text]1 comment=TPM error message label=AUE_tpm_physicaldisable title=TPM_PhysicalDisable program=/usr/lib/tcsd see=tcsd(8) format=[text]1 comment=TPM error message label=AUE_tpm_physicalenable title=TPM_PhysicalEnsable program=/usr/lib/tcsd see=tcsd(8) format=[text]1 comment=TPM error message label=AUE_tpm_physicaldeactivate title=TPM_PhysicalSetDeactivated program=/usr/lib/tcsd see=tcsd(8) format=[text]1 comment=TPM error message label=AUE_tpm_settempdeactivated title=TPM_SetTempDeactivated program=/usr/lib/tcsd see=tcsd(8) format=[text]1 comment=TPM error message label=AUE_tpm_physicalpresence title=TPM_PhysicalPresence program=/usr/lib/tcsd see=tcsd(8) format=[text]1 comment=TPM error message label=AUE_tpm_fieldupgrade title=TPM_FieldUpgrade program=/usr/lib/tcsd see=tcsd(8) format=[text]1 comment=TPM error message label=AUE_tpm_resetlockvalue title=TPM_ResetLockValue program=/usr/lib/tcsd see=tcsd(8) format=[text]1 comment=TPM error message label=AUE_hotplug_state title=change hotplug connection state program=/usr/lib/hotplugd see=hotplugd(1M) format=uauth1:path2:text3:text4:[text]5:text6 comment=authorization used: comment=device path: comment=connector or port: comment=new connection state: comment=state private information: comment=old connection state label=AUE_hotplug_set title=set hotplug bus private options program=/usr/lib/hotplugd see=hotplugd(1M) format=uauth1:path2:text3:text4 comment=authorization used: comment=device path: comment=connector or port: comment=bus private options label=AUE_hotplug_install title=install hotplug dependents program=/usr/lib/hotplugd see=hotplugd(1M) format=uauth1:path2:text3 comment=authorization used: comment=device path: comment=connector or port label=AUE_hotplug_uninstall title=uninstall hotplug dependents program=/usr/lib/hotplugd see=hotplugd(1M) format=uauth1:path2:text3 comment=authorization used: comment=device path: comment=connector or port label=AUE_hotplug_create_port title=create hotplug port program=/usr/lib/hotplugd see=hotplugd(1M) format=uauth1:path2:text3 comment=authorization used: comment=device path: comment=port label=AUE_hotplug_remove_port title=remove hotplug port program=/usr/lib/hotplugd see=hotplugd(1M) format=uauth1:path2:text3 comment=authorization used: comment=device path: comment=port label=AUE_hotplug_set_ceiling title=set hotplug state ceiling program=/usr/lib/hotplugd see=hotplugd(1M) format=uauth1:path2:text3:text4:text5 comment=authorization used: comment=device path: comment=port: comment=state threshold: comment=session handle label=AUE_hotplug_clear_ceiling title=clear hotplug state ceiling program=/usr/lib/hotplugd see=hotplugd(1M) format=uauth1:path2:text3:text4 comment=authorization used: comment=device path: comment=port: comment=session handle label=AUE_ilb_create_healthcheck title=Create Integrated Loadbalancer healthcheck object program=/usr/sbin/ilbadm see=ilbadm(1m) format=uauth1:path2:text3:text4:text5:text6 comment=authorization used: comment=healthcheck type-PING,TCP,UDP or 3rd party script: comment=healthcheck name: comment=timeout(secs) to kill a hung healthcheck probe - 0 means default value (see man page): comment=number of times to run a health check probe before declaring a server to be dead - 0 means default value (see man page): comment=time(secs) between 2 healthcheck events - 0 means default value(see man page) label=AUE_ilb_delete_healthcheck title=Delete Integrated Loadbalancer healthcheck object program=/usr/sbin/ilbadm see=ilbadm(1m) format=uauth1:text2 comment=authorization used: comment=healthcheck name label=AUE_ilb_create_rule title=Create Integrated Loadbalancer rule program=/usr/sbin/ilbadm see=ilbadm(1m) format=uauth1:in_remote2:iport3:iport4:text5:text6:[in_remote]7:[in_remote]8:text9:[text]10:[text]11:text12:text13:text14:text15:text16 comment=authorization used: comment=LB virtual IP address: comment=minimum value in port range: comment=maximum value in port range - max=min means single port is specified: comment=protocol: comment=[rr,hip,hipp,hipv],[dsr,nat,half-nat]: comment=min value for proxy source address for NAT: comment=max value in proxy source address range for NAT - max=min means single address is specified: comment=prefix length: comment=healthcheck name: comment=healthcheck port - ANY(dynamically determined by ilbd) or a positive integer: comment=connection timeout for NAT/half-NAT in sec. - 0 means no forced removal): comment=nat entry timeout for NAT/half-NAT in sec - 0 means default value(see man page): comment=session persistence mapping in sec - 0 means no persistence: comment=server group name: comment=rule name label=AUE_ilb_delete_rule title=Delete Integrated Loadbalancer rule program=/usr/sbin/ilbadm see=ilbadm(1m) format=uauth1:text2 comment=authorization used: comment=rule name - "all" means all rules label=AUE_ilb_disable_rule title=Disable Integrated Loadbalancer rule program=/usr/sbin/ilbadm see=ilbadm(1m) format=uauth1:text2 comment=authorization used: comment=rule name - "all" means all rules label=AUE_ilb_enable_rule title=Enable Integrated Loadbalancer rule program=/usr/sbin/ilbadm see=ilbadm(1m) format=uauth1:text2 comment=authorization used: comment=rule name - "all" means all rules label=AUE_ilb_add_server title=Add server to Integrated Loadbalancer program=/usr/sbin/ilbadm see=ilbadm(1m) format=uauth1:in_remote2:[text]3:text4:[iport]5:[iport]6 comment=authorization used: comment=IP address: comment=serverid that corresponds IP address - empty if authorization fails, user specified IP address is invalid or server cannot be added because server group is full: comment=server group name: comment=server's minimum value in port range - empty means default value (see man page): comment=server's maximum value in port range - empty means default value(see man page) label=AUE_ilb_disable_server title=Disable server to Integrated Loadbalancer program=/usr/sbin/ilbadm see=ilbadm(1m) format=uauth1:text2:[in_remote]3 comment=authorization used: comment=serverid: comment=IPaddr corresponding to the serverid - empty if authorization fails, or user specified serverid is nonexistent label=AUE_ilb_enable_server title=Enable server to Integrated Loadbalancer program=/usr/sbin/ilbadm see=ilbadm(1m) format=uauth1:text2:[in_remote]3 comment=authorization used: comment=serverid: comment=IPaddr corresponding to the serverid - empty if authorization fails, or user specified serverid is nonexistent label=AUE_ilb_remove_server title=Remove server from Integrated Loadbalancer program=/usr/sbin/ilbadm see=ilbadm(1m) format=uauth1:text2:text3:[in_remote]4 comment=authorization used: comment=serverid: comment=server group name: comment=IPaddr corresponding to serverid - empty if authorization fails or user specified serverid serverid is nonexistent label=AUE_ilb_create_servergroup title=Create server group for Integrated Loadbalancer program=/usr/sbin/ilbadm see=ilbadm(1m) format=uauth1:text2 comment=authorization used: comment=server group name label=AUE_ilb_delete_servergroup title=Delete server group from Integrated Loadbalancer program=/usr/sbin/ilbadm see=ilbadm(1m) format=uauth1:text2 comment=authorization used: comment=server group name label=AUE_nwam_enable format=text1:text2 comment=Type of profile being enabled: comment=Name of profile being enabled label=AUE_nwam_disable format=text1:text2 comment=Type of profile being disabled: comment=Name of profile being disabled label=AUE_nwam_offline format=text1:text2 comment=Type of profile being offlined: comment=Name of profile being offlined label=AUE_nwam_online format=text1:text2 comment=Type of profile being onlined: comment=Name of profile being onlined label=AUE_netcfg_update format=text1:text2 comment=Back-end data file being updated: comment=Name of object being updated label=AUE_netcfg_remove format=text1:text2 comment=Back-end data file being modified: comment=Name of object being removed label=AUE_ft_start title=file transfer: session start program=sftp-server format=user label=AUE_ft_stop title=file transfer: session end program=sftp-server format=user label=AUE_ft_rename title=file transfer: rename program=sftp-server format=path1:[attr]2:path3 comment=from file name: comment=from file attributes: comment=to file name label=AUE_ft_remove title=file transfer: remove program=sftp-server format=path1:[attr]2 comment=file path: comment=file attributes label=AUE_ft_rmdir title=file transfer: rmdir program=sftp-server format=path1:[attr]2 comment=file path: comment=file attributes label=AUE_ft_mkdir title=file transfer: mkdir program=sftp-server format=arg1:path2:[attr]3 comment=mode: comment=directory path: comment=directory attributes label=AUE_ft_symlink title=file transfer: symlink program=sftp-server format=text1:path:[attr] comment=symbolic link string label=AUE_ft_get title=file transfer: download program=sftp-server format=path1:[attr]2 comment=file path: comment=file attributes label=AUE_ft_put title=file transfer: upload program=sftp-server format=path1:[attr]2 comment=file path: comment=file attributes label=AUE_ft_chown title=file transfer: chown program=sftp-server format=arg1:arg2:path3:[attr]4 comment=new file uid: comment=new file gid: comment=file path: comment=file attributes label=AUE_ft_chmod title=file transfer: chmod program=sftp-server format=arg1:path2:[attr]3 comment=new file mode: comment=file path: comment=file attributes label=AUE_ft_utimes title=file transfer: utimes program=sftp-server format=path1:[attr]2 comment=file path: comment=file attributes label=AUE_xconnect title=X server connection program=Xorg see=Xorg(1) format=xclient1:in_peer2 comment=client ID: comment=remote or local peer address label=AUE_xdisconnect title=X server disconnect program=Xorg see=Xorg(1) format=xclient1 comment=client ID label=AUE_vnc_connect title=VNC server connection program=Xvnc see=Xvnc(1) format=in_peer1 comment=remote or local peer address label=AUE_vnc_disconnect title=VNC server disconnect program=Xvnc see=Xvnc(1) format=in_peer1 comment=remote or local peer address label=AUE_ftpd title=FTP server login program=proftpd see=in.ftpd(1M) format=[text]1 comment=error message label=AUE_ftpd_logout title=FTP server logout program=proftpd see=in.ftpd(1M) format=user label=AUE_da_allocate title=device allocation program=allocate(1) format=[user]1:[zonename]2:path3:[attr]4:[path_list]5:[uauth]6:[uauth]7:[text]8 comment=target owner if different than caller - present only in case of failure: comment=affected non-global zone: comment=device path: comment=device attributes: comment=device list: comment=successful authorizations: comment=failed authorizations: comment=error message label=AUE_da_allocate_forced title=forced device allocation program=allocate(1) format=[user]1:[zonename]2:path3:[attr]4:[path_list]5:[uauth]6:[uauth]7:[text]8 comment=target owner if different than caller - present only in case of failure: comment=affected non-global zone: comment=device path: comment=device attributes: comment=device list: comment=successful authorizations: comment=failed authorizations: comment=error message label=AUE_da_deallocate title=device deallocation program=[de]allocate(1) format=[zonename]1:[path]2:[attr]3:[path_list]4:[uauth]5:[uauth]6:[text]7 comment=affected non-global zone: comment=device path: comment=device attributes: comment=device list: comment=successful authorizations: comment=failed authorizations: comment=error message label=AUE_da_deallocate_forced title=forced device deallocation program=[de]allocate(1) format=[zonename]1:[path]2:[attr]3:[path_list]4:[uauth]5:[uauth]6:[text]7 comment=affected non-global zone: comment=device path: comment=device attributes: comment=device list: comment=successful authorizations: comment=failed authorizations: comment=error message label=AUE_da_list_devices title=list allocatable devices program=list_devices(1) format=[user]1:[zonename]2:[path]3:[attr]4:[uauth]5:[uauth]6:[text]7 comment=listed user if different than caller: comment=affected non-global zone: comment=device path: comment=device attributes: comment=successful authorizations: comment=failed authorizations: comment=error message label=AUE_sudo title=sudo execution program=sudo(1M) format=path1:path2:command3:[text]4 comment=working directory: comment=command pathname: comment=command args and optional environment: comment=error message for failed sudo label=AUE_mountd_mount title=mountd mount program=mountd(1M) format=path1:[attr]2 comment=mount point path: comment=mount point attributes label=AUE_mountd_umount title=mountd unmount program=mountd(1M) format=path1:[attr]2 comment=mount point path: comment=mount point attributes label=AUE_admin_edit title=edit administrative file program=/usr/bin/pfedit see=pfedit(1M) format=path1:[uauth]2:[text]3 comment=object name: comment=authorization used: comment=changed values label=AUE_admin_file_create title=create administrative file program=/usr/bin/pfedit see=pfedit(1M) format=path1:[uauth]2:[text]3 comment=object name: comment=authorization used: comment=initial values label=AUE_admin_file_remove title=remove administrative file program=/usr/bin/pfedit see=pfedit(1M) format=path1:[uauth]2 comment=object name: comment=authorization used label=AUE_rad_login title=connect to RAD program=/usr/lib/rad/rad see=rad(1m) format=[text]1 comment=error message label=AUE_ikev2_add_sa title=add IKEv2 SA program=/usr/lib/inet/in.ikev2d see=in.ikev2d(1M) format=text1:[text]2:[text]3:[text]4:[text]5:in_remote6:in_remote7 comment=IKEv2 Local SPI: comment=Type of local authentication - empty if rule check fails or remote auth fails first: comment=Type of remote authentication - empty if rule check fails or local auth fails first: comment=Local identity string - empty if rule check fails or remote auth fails first: comment=Local identity string - empty if rule check fails or local auth fails first: comment=Local IP address of SA: comment=Remote IP address of SA label=AUE_ikev2_rekey_sa title=rekey IKEv2 SA program=/usr/lib/inet/in.ikev2d see=in.ikev2d(1M) format=text1:[text]2:[text]3:[text]4:in_remote5:in_remote6 comment=IKEv2 Local SPI: comment=IKEv2 Local SPI rekeyed by this SA - empty if rekey failed: comment=Local identity string - empty if rule check fails or remote auth fails first: comment=Local identity string - empty if rule check fails or local auth fails first: comment=Local IP address of SA: comment=Remote IP address of SA label=AUE_ikev2_delete_sa title=delete IKEv2 SA program=/usr/lib/inet/in.ikev2d see=in/ikev2d(1M) format=text1:[text]2:[text]3:in_remote4:in_remote5 comment=IKEv2 SPI: comment=Local identity string - empty if rule check fails or remote auth fails first: comment=Local identity string - empty if rule check fails or local auth fails first: comment=Local IP address of SA: comment=Remote IP address of SA label=AUE_auths_add title=add new authorization program=/usr/bin/auths see=auths(1) format=text1:text2:[text]3:[text]4:[text]5:[text]6:uauth7 comment=the name-service repository to be modified (-S): comment=name of authorization being added, modified, or removed: comment=The original short description or terse name for the authorization being modified.: comment=The new short description or terse name for the authorization being modified.: comment=A semicolon-separated (;) list of key-value pairs that describe the original attributes of an authorization being modified.: comment=A semicolon-separated (;) list of key-value pairs that describe the new attributes of an authorization.: comment=required authorization for action label=AUE_auths_modify title=modify an existing authorization program=/usr/bin/auths see=auths(1) format=text1:text2:[text]3:[text]4:[text]5:[text]6:uauth7 comment=the name-service repository to be modified (-S): comment=name of authorization being added, modified, or removed: comment=The original short description or terse name for the authorization being modified.: comment=The new short description or terse name for the authorization being modified.: comment=A semicolon-separated (;) list of key-value pairs that describe the original attributes of an authorization being modified.: comment=A semicolon-separated (;) list of key-value pairs that describe the new attributes of an authorization.: comment=required authorization for action label=AUE_auths_delete title=remove an existing authorization program=/usr/bin/auths see=auths(1) format=text1:text2:[text]3:[text]4:[text]5:[text]6:uauth7 comment=the name-service repository to be modified (-S): comment=name of authorization being added, modified, or removed: comment=The original short description or terse name for the authorization being modified.: comment=The new short description or terse name for the authorization being modified.: comment=A semicolon-separated (;) list of key-value pairs that describe the original attributes of an authorization being modified.: comment=A semicolon-separated (;) list of key-value pairs that describe the new attributes of an authorization.: comment=required authorization for action label=AUE_profiles_add title=add new profile program=/usr/bin/profiles see=profiles(1) format=text1:[text]2:text3:[text]4:text5:[text]6:[text]7:[text]8:[text]9:[text]10:[text]11:[text]12:[text]13:[text]14:[text]15:[text]16:[text]17:[text]18:[text]19:[text]20:[text]21:[text]22:[text]23:[uauth]24:[uauth]25 comment=the name-service repository to be modified (-S): comment=original profile name if an existing profile is renamed using 'set name='.: comment=name of profile created or modified with 'profiles -p' or the renamed profile from 'set name=': comment=original description text of the profile: comment=new or updated profile description text: comment=The original command contents (id and attributes) from exec_attr(4) before any changes occurred.: comment=The new or updated command details (id and attributes) from exec_attr(4): comment=The original audit flags assigned to the profile from the 'always_audit' and 'never_audit' properties.: comment=The new or updated audit flags assigned to the profile from the 'always_audit' and 'never_audit' properties.: comment=The original authorizations assigned to the profile from the 'auths' property.: comment=The new or updated authorizations assigned to the profile from the 'auths' property.: comment=The original default set of privileges assigned to a user's processes as specified in the 'defaultpriv' property.: comment=The new or updated default set of privileges assigned to a user's processes as specified in the 'defaultpriv' property.: comment=The original path to the help file for the profile as specified in the 'help' property.: comment=The new or updated path to the help file for the profile as specified in the 'help' property.: comment=The original maximum set of privileges a user or any process started by the user can obtain as specified in the 'limitpriv' property.: comment=The new or updated maximum set of privileges a user or any process started by the user can obtain as specified in the 'limitpriv' property.: comment=The origginal PAM policy applied to a user from the 'pam_policy' property.: comment=The new or updated PAM policy to apply to a user from the 'pam_policy' property.: comment=The original set of privileges applied to the inheritable set of the executable process as specified in the 'privs' property.: comment=The set of privileges to be applied to the inheritable set of the executable process as specified in the 'privs' property.: comment=One or more comma-separated supplementary profiles originally assigned to the profile from the 'profiles' property.: comment=One or more comma-separated supplementary profiles to be added to the profile from the 'profiles' property.: comment=successfully used authorizations: comment=failed authorizations label=AUE_profiles_modify title=modify an existing profile program=/usr/bin/profiles see=profiles(1) format=text1:[text]2:text3:[text]4:text5:[text]6:[text]7:[text]8:[text]9:[text]10:[text]11:[text]12:[text]13:[text]14:[text]15:[text]16:[text]17:[text]18:[text]19:[text]20:[text]21:[text]22:[text]23:[uauth]24:[uauth]25 comment=the name-service repository to be modified (-S): comment=original profile name if an existing profile is renamed using 'set name='.: comment=name of profile created or modified with 'profiles -p' or the renamed profile from 'set name=': comment=original description text of the profile: comment=new or updated profile description text: comment=The original command contents (id and attributes) from exec_attr(4) before any changes occurred.: comment=The new or updated command details (id and attributes) from exec_attr(4): comment=The original audit flags assigned to the profile from the 'always_audit' and 'never_audit' properties.: comment=The new or updated audit flags assigned to the profile from the 'always_audit' and 'never_audit' properties.: comment=The original authorizations assigned to the profile from the 'auths' property.: comment=The new or updated authorizations assigned to the profile from the 'auths' property.: comment=The original default set of privileges assigned to a user's processes as specified in the 'defaultpriv' property.: comment=The new or updated default set of privileges assigned to a user's processes as specified in the 'defaultpriv' property.: comment=The original path to the help file for the profile as specified in the 'help' property.: comment=The new or updated path to the help file for the profile as specified in the 'help' property.: comment=The original maximum set of privileges a user or any process started by the user can obtain as specified in the 'limitpriv' property.: comment=The new or updated maximum set of privileges a user or any process started by the user can obtain as specified in the 'limitpriv' property.: comment=The origginal PAM policy applied to a user from the 'pam_policy' property.: comment=The new or updated PAM policy to apply to a user from the 'pam_policy' property.: comment=The original set of privileges applied to the inheritable set of the executable process as specified in the 'privs' property.: comment=The set of privileges to be applied to the inheritable set of the executable process as specified in the 'privs' property.: comment=One or more comma-separated supplementary profiles originally assigned to the profile from the 'profiles' property.: comment=One or more comma-separated supplementary profiles to be added to the profile from the 'profiles' property.: comment=successfully used authorizations: comment=failed authorizations label=AUE_profiles_delete title=remove an existing profile program=/usr/bin/profiles see=profiles(1) format=text1:[text]2:text3:[text]4:text5:[text]6:[text]7:[text]8:[text]9:[text]10:[text]11:[text]12:[text]13:[text]14:[text]15:[text]16:[text]17:[text]18:[text]19:[text]20:[text]21:[text]22:[text]23:[uauth]24:[uauth]25 comment=the name-service repository to be modified (-S): comment=original profile name if an existing profile is renamed using 'set name='.: comment=name of profile created or modified with 'profiles -p' or the renamed profile from 'set name=': comment=original description text of the profile: comment=new or updated profile description text: comment=The original command contents (id and attributes) from exec_attr(4) before any changes occurred.: comment=The new or updated command details (id and attributes) from exec_attr(4): comment=The original audit flags assigned to the profile from the 'always_audit' and 'never_audit' properties.: comment=The new or updated audit flags assigned to the profile from the 'always_audit' and 'never_audit' properties.: comment=The original authorizations assigned to the profile from the 'auths' property.: comment=The new or updated authorizations assigned to the profile from the 'auths' property.: comment=The original default set of privileges assigned to a user's processes as specified in the 'defaultpriv' property.: comment=The new or updated default set of privileges assigned to a user's processes as specified in the 'defaultpriv' property.: comment=The original path to the help file for the profile as specified in the 'help' property.: comment=The new or updated path to the help file for the profile as specified in the 'help' property.: comment=The original maximum set of privileges a user or any process started by the user can obtain as specified in the 'limitpriv' property.: comment=The new or updated maximum set of privileges a user or any process started by the user can obtain as specified in the 'limitpriv' property.: comment=The origginal PAM policy applied to a user from the 'pam_policy' property.: comment=The new or updated PAM policy to apply to a user from the 'pam_policy' property.: comment=The original set of privileges applied to the inheritable set of the executable process as specified in the 'privs' property.: comment=The set of privileges to be applied to the inheritable set of the executable process as specified in the 'privs' property.: comment=One or more comma-separated supplementary profiles originally assigned to the profile from the 'profiles' property.: comment=One or more comma-separated supplementary profiles to be added to the profile from the 'profiles' property.: comment=successfully used authorizations: comment=failed authorizations label=AUE_passwd_shell title=passwd -e program=/usr/bin/passwd see=passwd(1) format=text1:[user]2:[text]3:[text]4:[text]5:[text]6:uauth7 comment=the name-service repository to be modified (-r): comment=user's login name which is being modified if different from caller: comment=name of the old shell prior to being changed using 'passwd -e': comment=name of the new shell from 'passwd -e': comment=text of the old gecos field prior to being changed using 'passwd -g': comment=text of the new gecos field from 'passwd -g': comment=required authorization for action label=AUE_passwd_gecos title=passwd -g program=/usr/bin/passwd see=passwd(1) format=text1:[user]2:[text]3:[text]4:[text]5:[text]6:uauth7 comment=the name-service repository to be modified (-r): comment=user's login name which is being modified if different from caller: comment=name of the old shell prior to being changed using 'passwd -e': comment=name of the new shell from 'passwd -e': comment=text of the old gecos field prior to being changed using 'passwd -g': comment=text of the new gecos field from 'passwd -g': comment=required authorization for action label=AUE_passwd_delete title=passwd -d program=/usr/bin/passwd see=passwd(1) format=text1:[user]2:text3:text4:uauth5 comment=the name-service repository to be modified (-r): comment=user's login name which is being modified if different from caller: comment=previous password status, for example LK, NL, or NP, prior to be changed with passwd(1): comment=new password status, for example LK, NL, or NP, after being changed with passwd(1): comment=required authorization for action label=AUE_passwd_nologin title=passwd -N program=/usr/bin/passwd see=passwd(1) format=text1:[user]2:text3:text4:uauth5 comment=the name-service repository to be modified (-r): comment=user's login name which is being modified if different from caller: comment=previous password status, for example LK, NL, or NP, prior to be changed with passwd(1): comment=new password status, for example LK, NL, or NP, after being changed with passwd(1): comment=required authorization for action label=AUE_account_lock title=passwd -l program=/usr/bin/passwd see=passwd(1) format=text1:[user]2:text3:text4:uauth5 comment=the name-service repository to be modified (-r): comment=user's login name which is being modified if different from caller: comment=previous password status, for example LK, NL, or NP, prior to be changed with passwd(1): comment=new password status, for example LK, NL, or NP, after being changed with passwd(1): comment=required authorization for action label=AUE_account_unlock title=passwd -u program=/usr/bin/passwd see=passwd(1) format=text1:[user]2:text3:text4:uauth5 comment=the name-service repository to be modified (-r): comment=user's login name which is being modified if different from caller: comment=previous password status, for example LK, NL, or NP, prior to be changed with passwd(1): comment=new password status, for example LK, NL, or NP, after being changed with passwd(1): comment=required authorization for action label=AUE_passwd_min_days title=passwd -n min program=/usr/bin/passwd see=passwd(1) format=text1:[user]2:[text]3:[text]4:[text]5:[text]6:[text]7:[text]8:uauth9 comment=the name-service repository to be modified (-r): comment=user's login name which is being modified if different from caller: comment=previous value for minimum number of days between password changes (passwd(1) -n min): comment=new value for minimum number of days between password changes (passwd(1) -n min): comment=previous value for maximum number of days a password is valid (passwd(1) -x max): comment=new value for maximum number of days a password is valid (passwd(1) -x max): comment=previous value for number of days before the password expires and the user is warned (passwd(1) -w warn): comment=new value for number of days before the password expires and the user is warned (passwd(1) -w warn): comment=required authorization for action label=AUE_passwd_warn_days title=passwd -w warn program=/usr/bin/passwd see=passwd(1) format=text1:[user]2:[text]3:[text]4:[text]5:[text]6:[text]7:[text]8:uauth9 comment=the name-service repository to be modified (-r): comment=user's login name which is being modified if different from caller: comment=previous value for minimum number of days between password changes (passwd(1) -n min): comment=new value for minimum number of days between password changes (passwd(1) -n min): comment=previous value for maximum number of days a password is valid (passwd(1) -x max): comment=new value for maximum number of days a password is valid (passwd(1) -x max): comment=previous value for number of days before the password expires and the user is warned (passwd(1) -w warn): comment=new value for number of days before the password expires and the user is warned (passwd(1) -w warn): comment=required authorization for action label=AUE_passwd_max_days title=passwd -x max program=/usr/bin/passwd see=passwd(1) format=text1:[user]2:[text]3:[text]4:[text]5:[text]6:[text]7:[text]8:uauth9 comment=the name-service repository to be modified (-r): comment=user's login name which is being modified if different from caller: comment=previous value for minimum number of days between password changes (passwd(1) -n min): comment=new value for minimum number of days between password changes (passwd(1) -n min): comment=previous value for maximum number of days a password is valid (passwd(1) -x max): comment=new value for maximum number of days a password is valid (passwd(1) -x max): comment=previous value for number of days before the password expires and the user is warned (passwd(1) -w warn): comment=new value for number of days before the password expires and the user is warned (passwd(1) -w warn): comment=required authorization for action label=AUE_passwd_expire title=passwd -f program=/usr/bin/passwd see=passwd(1) format=text1:[user]2:[text]3:[text]4:[text]5:[text]6:[text]7:[text]8:uauth9 comment=the name-service repository to be modified (-r): comment=user's login name which is being modified if different from caller: comment=previous value for minimum number of days between password changes (passwd(1) -n min): comment=new value for minimum number of days between password changes (passwd(1) -n min): comment=previous value for maximum number of days a password is valid (passwd(1) -x max): comment=new value for maximum number of days a password is valid (passwd(1) -x max): comment=previous value for number of days before the password expires and the user is warned (passwd(1) -w warn): comment=new value for number of days before the password expires and the user is warned (passwd(1) -w warn): comment=required authorization for action label=AUE_useradd title=add a new user to the system program=/usr/sbin/useradd see=useradd(1M) format=[command]1:text2:[text]3:[user]4:[user]5:[group]6:[group]7:[text]8:[text]9:[text]10:[text]11:[text]12:[text]13:[text]14:[text]15:[text]16:[text]17:[text]18:[text]19:[text]20:[text]21:[text]22:[text]23:[text]24:[text]25:[text]26:[text]27:[text]28:[text]29:[text]30:[text]31:[text]32:[text]33:[text]34:[text]35:[text]36:[text]37:[text]38:[text]39:[text]40:[text]41:[text]42:[text]43:[text]44:[text]45:[text]46:[text]47:[text]48:[text]49:[text]50:[text]51:[text]52:[text]53:[text]54:[newgroups]55:[newgroups]56:[text]57:[text]58:[text]59:[text]60:[uauth]61 comment=command args and optional environment: comment=the name-service repository to be modified (-S): comment=the host or netgroup which qualifies where extended attributes are applicable (-q): comment=user's original login name and uid from passwd(4): comment=user's login name and uid from passwd(4): comment=user's original gid and group name from passwd(4): comment=user's gid and group name from passwd(4): comment=original gecos field from passwd(4): comment=gecos field from passwd(4): comment=original pathname to the home directory from passwd(4): comment=pathname to the home directory from passwd(4): comment=original login shell from passwd(4): comment=login shell from passwd(4), if empty default is /usr/bin/sh: comment=The original account expiration date from shadow(4): comment=The account expiration date from shadow(4): comment=The original value of the maximum number of days between uses that the before the account is locked.: comment=The maximum number of days between uses that the before the account is locked.: comment=The original per-user audit preselection flags as described in audit_flags(5).: comment=The per-user audit preselection flags as described in audit_flags(5).: comment=The original comma-separated list of authenticated profiles from prof_attr(4) assigned to the user.: comment=A comma-separated list of authenticated profiles from prof_attr(4) assigned to the user.: comment=The original comma separated list of authorization names from auth_attr(4).: comment=A comma separated list of authorization names from auth_attr(4).: comment=The original default set of privileges assigned to user's inheritable set upon login (see privileges(5)).: comment=The default set of privileges assigned to user's inheritable set upon login (see privileges(5)).: comment=The original maximum set of privileges a user or any process started by the user can obtain.: comment=The maximum set of privileges a user or any process started by the user can obtain.: comment=Original value specifying whether an account is locked after RETRIES number of failed logins or the number of failed logins allowed before a user's account is locked.: comment=Specifies whether an account is locked after RETRIES number of failed logins or the number of failed logins allowed before a user's account is locked.: comment=The original PAM policy to apply to the user (see pam_user_policy(5)).: comment=The PAM policy to apply to the user (see pam_user_policy(5)).: comment=The original comma-separated list of profiles from prof_attr(4) assigned to the user.: comment=A comma-separated list of profiles from prof_attr(4) assigned to the user.: comment=The original name of one project from project(4) which will used as the default project for the user (see getdefaultproj(3PROJECT) and user_attr(4)).: comment=The name of one project from project(4) which will used as the default project for the user (see getdefaultproj(3PROJECT) and user_attr(4)).: comment=The original roleauth value which specifies whether the assigned role requires a role password or the password of the user assuming the role.: comment=Specifies whether the assigned role requires a role password or the password of the user assuming the role.: comment=The original comma-separated list of role names the user is permitted to assume.: comment=A comma-separated list of role names the user is permitted to assume.: comment=Original value of 'type' which indicates whether the account is for a normal user, one who logs in, or a role.: comment=Indicates whether the account is for a normal user, one who logs in, or a role.: comment=TX: The original maximum label at which the user can operate.: comment=TX: The maximum label at which the user can operate.: comment=TX: original idlecmd value which indicates whether the workstation should lock a user's session if idle for too long.: comment=TX: a keyword to indicate whether the workstation should lock a user's session if idle for too long.: comment=TX: The original idletime value which specifies the maximum number of minutes a workstation can remain idle before the TX window manager attempts the task specified in 'idlecmd'.: comment=TX: The maximum number of minutes a workstation can remain idle before the TX window manager attempts the task specified in 'idlecmd'.: comment=TX: The original minimum label at which the user can log in.: comment=TX: The minimum label at which the user can log in.: comment=The original days and times at which users can access the specified applications and services.: comment=The new days and times at which users can access the specified applications and services.: comment=The original time zone to be used when interpreting times specified in access_times entries.: comment=The original time zone to be used when interpreting times specified in access_times entries.: comment=The list of users updated when a role is removed.: comment=Original supplementary group(4) membership for the user: comment=Supplementary group(4) membership for the user: comment=original list of projects assigned to the user; see project(4): comment=projects assigned to the user or unassigned from user; see project(4): comment=original auto_home(4) entry: comment=entry added to or removed from auto_home(4): comment=authorization required for the action label=AUE_usermod title=modify a user's login information on the system program=/usr/sbin/usermod see=usermod(1M) format=[command]1:text2:[text]3:[user]4:[user]5:[group]6:[group]7:[text]8:[text]9:[text]10:[text]11:[text]12:[text]13:[text]14:[text]15:[text]16:[text]17:[text]18:[text]19:[text]20:[text]21:[text]22:[text]23:[text]24:[text]25:[text]26:[text]27:[text]28:[text]29:[text]30:[text]31:[text]32:[text]33:[text]34:[text]35:[text]36:[text]37:[text]38:[text]39:[text]40:[text]41:[text]42:[text]43:[text]44:[text]45:[text]46:[text]47:[text]48:[text]49:[text]50:[text]51:[text]52:[text]53:[text]54:[newgroups]55:[newgroups]56:[text]57:[text]58:[text]59:[text]60:[uauth]61 comment=command args and optional environment: comment=the name-service repository to be modified (-S): comment=the host or netgroup which qualifies where extended attributes are applicable (-q): comment=user's original login name and uid from passwd(4): comment=user's login name and uid from passwd(4): comment=user's original gid and group name from passwd(4): comment=user's gid and group name from passwd(4): comment=original gecos field from passwd(4): comment=gecos field from passwd(4): comment=original pathname to the home directory from passwd(4): comment=pathname to the home directory from passwd(4): comment=original login shell from passwd(4): comment=login shell from passwd(4), if empty default is /usr/bin/sh: comment=The original account expiration date from shadow(4): comment=The account expiration date from shadow(4): comment=The original value of the maximum number of days between uses that the before the account is locked.: comment=The maximum number of days between uses that the before the account is locked.: comment=The original per-user audit preselection flags as described in audit_flags(5).: comment=The per-user audit preselection flags as described in audit_flags(5).: comment=The original comma-separated list of authenticated profiles from prof_attr(4) assigned to the user.: comment=A comma-separated list of authenticated profiles from prof_attr(4) assigned to the user.: comment=The original comma separated list of authorization names from auth_attr(4).: comment=A comma separated list of authorization names from auth_attr(4).: comment=The original default set of privileges assigned to user's inheritable set upon login (see privileges(5)).: comment=The default set of privileges assigned to user's inheritable set upon login (see privileges(5)).: comment=The original maximum set of privileges a user or any process started by the user can obtain.: comment=The maximum set of privileges a user or any process started by the user can obtain.: comment=Original value specifying whether an account is locked after RETRIES number of failed logins or the number of failed logins allowed before a user's account is locked.: comment=Specifies whether an account is locked after RETRIES number of failed logins or the number of failed logins allowed before a user's account is locked.: comment=The original PAM policy to apply to the user (see pam_user_policy(5)).: comment=The PAM policy to apply to the user (see pam_user_policy(5)).: comment=The original comma-separated list of profiles from prof_attr(4) assigned to the user.: comment=A comma-separated list of profiles from prof_attr(4) assigned to the user.: comment=The original name of one project from project(4) which will used as the default project for the user (see getdefaultproj(3PROJECT) and user_attr(4)).: comment=The name of one project from project(4) which will used as the default project for the user (see getdefaultproj(3PROJECT) and user_attr(4)).: comment=The original roleauth value which specifies whether the assigned role requires a role password or the password of the user assuming the role.: comment=Specifies whether the assigned role requires a role password or the password of the user assuming the role.: comment=The original comma-separated list of role names the user is permitted to assume.: comment=A comma-separated list of role names the user is permitted to assume.: comment=Original value of 'type' which indicates whether the account is for a normal user, one who logs in, or a role.: comment=Indicates whether the account is for a normal user, one who logs in, or a role.: comment=TX: The original maximum label at which the user can operate.: comment=TX: The maximum label at which the user can operate.: comment=TX: original idlecmd value which indicates whether the workstation should lock a user's session if idle for too long.: comment=TX: a keyword to indicate whether the workstation should lock a user's session if idle for too long.: comment=TX: The original idletime value which specifies the maximum number of minutes a workstation can remain idle before the TX window manager attempts the task specified in 'idlecmd'.: comment=TX: The maximum number of minutes a workstation can remain idle before the TX window manager attempts the task specified in 'idlecmd'.: comment=TX: The original minimum label at which the user can log in.: comment=TX: The minimum label at which the user can log in.: comment=The original days and times at which users can access the specified applications and services.: comment=The new days and times at which users can access the specified applications and services.: comment=The original time zone to be used when interpreting times specified in access_times entries.: comment=The original time zone to be used when interpreting times specified in access_times entries.: comment=The list of users updated when a role is removed.: comment=Original supplementary group(4) membership for the user: comment=Supplementary group(4) membership for the user: comment=original list of projects assigned to the user; see project(4): comment=projects assigned to the user or unassigned from user; see project(4): comment=original auto_home(4) entry: comment=entry added to or removed from auto_home(4): comment=authorization required for the action label=AUE_userdel title=delete a user's login from the system program=/usr/sbin/userdel see=userdel(1M) format=[command]1:text2:[text]3:[user]4:[user]5:[group]6:[group]7:[text]8:[text]9:[text]10:[text]11:[text]12:[text]13:[text]14:[text]15:[text]16:[text]17:[text]18:[text]19:[text]20:[text]21:[text]22:[text]23:[text]24:[text]25:[text]26:[text]27:[text]28:[text]29:[text]30:[text]31:[text]32:[text]33:[text]34:[text]35:[text]36:[text]37:[text]38:[text]39:[text]40:[text]41:[text]42:[text]43:[text]44:[text]45:[text]46:[text]47:[text]48:[text]49:[text]50:[text]51:[text]52:[text]53:[text]54:[newgroups]55:[newgroups]56:[text]57:[text]58:[text]59:[text]60:[uauth]61 comment=command args and optional environment: comment=the name-service repository to be modified (-S): comment=the host or netgroup which qualifies where extended attributes are applicable (-q): comment=user's original login name and uid from passwd(4): comment=user's login name and uid from passwd(4): comment=user's original gid and group name from passwd(4): comment=user's gid and group name from passwd(4): comment=original gecos field from passwd(4): comment=gecos field from passwd(4): comment=original pathname to the home directory from passwd(4): comment=pathname to the home directory from passwd(4): comment=original login shell from passwd(4): comment=login shell from passwd(4), if empty default is /usr/bin/sh: comment=The original account expiration date from shadow(4): comment=The account expiration date from shadow(4): comment=The original value of the maximum number of days between uses that the before the account is locked.: comment=The maximum number of days between uses that the before the account is locked.: comment=The original per-user audit preselection flags as described in audit_flags(5).: comment=The per-user audit preselection flags as described in audit_flags(5).: comment=The original comma-separated list of authenticated profiles from prof_attr(4) assigned to the user.: comment=A comma-separated list of authenticated profiles from prof_attr(4) assigned to the user.: comment=The original comma separated list of authorization names from auth_attr(4).: comment=A comma separated list of authorization names from auth_attr(4).: comment=The original default set of privileges assigned to user's inheritable set upon login (see privileges(5)).: comment=The default set of privileges assigned to user's inheritable set upon login (see privileges(5)).: comment=The original maximum set of privileges a user or any process started by the user can obtain.: comment=The maximum set of privileges a user or any process started by the user can obtain.: comment=Original value specifying whether an account is locked after RETRIES number of failed logins or the number of failed logins allowed before a user's account is locked.: comment=Specifies whether an account is locked after RETRIES number of failed logins or the number of failed logins allowed before a user's account is locked.: comment=The original PAM policy to apply to the user (see pam_user_policy(5)).: comment=The PAM policy to apply to the user (see pam_user_policy(5)).: comment=The original comma-separated list of profiles from prof_attr(4) assigned to the user.: comment=A comma-separated list of profiles from prof_attr(4) assigned to the user.: comment=The original name of one project from project(4) which will used as the default project for the user (see getdefaultproj(3PROJECT) and user_attr(4)).: comment=The name of one project from project(4) which will used as the default project for the user (see getdefaultproj(3PROJECT) and user_attr(4)).: comment=The original roleauth value which specifies whether the assigned role requires a role password or the password of the user assuming the role.: comment=Specifies whether the assigned role requires a role password or the password of the user assuming the role.: comment=The original comma-separated list of role names the user is permitted to assume.: comment=A comma-separated list of role names the user is permitted to assume.: comment=Original value of 'type' which indicates whether the account is for a normal user, one who logs in, or a role.: comment=Indicates whether the account is for a normal user, one who logs in, or a role.: comment=TX: The original maximum label at which the user can operate.: comment=TX: The maximum label at which the user can operate.: comment=TX: original idlecmd value which indicates whether the workstation should lock a user's session if idle for too long.: comment=TX: a keyword to indicate whether the workstation should lock a user's session if idle for too long.: comment=TX: The original idletime value which specifies the maximum number of minutes a workstation can remain idle before the TX window manager attempts the task specified in 'idlecmd'.: comment=TX: The maximum number of minutes a workstation can remain idle before the TX window manager attempts the task specified in 'idlecmd'.: comment=TX: The original minimum label at which the user can log in.: comment=TX: The minimum label at which the user can log in.: comment=The original days and times at which users can access the specified applications and services.: comment=The new days and times at which users can access the specified applications and services.: comment=The original time zone to be used when interpreting times specified in access_times entries.: comment=The original time zone to be used when interpreting times specified in access_times entries.: comment=The list of users updated when a role is removed.: comment=Original supplementary group(4) membership for the user: comment=Supplementary group(4) membership for the user: comment=original list of projects assigned to the user; see project(4): comment=projects assigned to the user or unassigned from user; see project(4): comment=original auto_home(4) entry: comment=entry added to or removed from auto_home(4): comment=authorization required for the action label=AUE_roleadd title=add a new role to the system program=/usr/sbin/roleadd see=roleadd(1M) format=[command]1:text2:[text]3:[user]4:[user]5:[group]6:[group]7:[text]8:[text]9:[text]10:[text]11:[text]12:[text]13:[text]14:[text]15:[text]16:[text]17:[text]18:[text]19:[text]20:[text]21:[text]22:[text]23:[text]24:[text]25:[text]26:[text]27:[text]28:[text]29:[text]30:[text]31:[text]32:[text]33:[text]34:[text]35:[text]36:[text]37:[text]38:[text]39:[text]40:[text]41:[text]42:[text]43:[text]44:[text]45:[text]46:[text]47:[text]48:[text]49:[text]50:[text]51:[text]52:[text]53:[text]54:[newgroups]55:[newgroups]56:[text]57:[text]58:[text]59:[text]60:[uauth]61 comment=command args and optional environment: comment=the name-service repository to be modified (-S): comment=the host or netgroup which qualifies where extended attributes are applicable (-q): comment=user's original login name and uid from passwd(4): comment=user's login name and uid from passwd(4): comment=user's original gid and group name from passwd(4): comment=user's gid and group name from passwd(4): comment=original gecos field from passwd(4): comment=gecos field from passwd(4): comment=original pathname to the home directory from passwd(4): comment=pathname to the home directory from passwd(4): comment=original login shell from passwd(4): comment=login shell from passwd(4), if empty default is /usr/bin/sh: comment=The original account expiration date from shadow(4): comment=The account expiration date from shadow(4): comment=The original value of the maximum number of days between uses that the before the account is locked.: comment=The maximum number of days between uses that the before the account is locked.: comment=The original per-user audit preselection flags as described in audit_flags(5).: comment=The per-user audit preselection flags as described in audit_flags(5).: comment=The original comma-separated list of authenticated profiles from prof_attr(4) assigned to the user.: comment=A comma-separated list of authenticated profiles from prof_attr(4) assigned to the user.: comment=The original comma separated list of authorization names from auth_attr(4).: comment=A comma separated list of authorization names from auth_attr(4).: comment=The original default set of privileges assigned to user's inheritable set upon login (see privileges(5)).: comment=The default set of privileges assigned to user's inheritable set upon login (see privileges(5)).: comment=The original maximum set of privileges a user or any process started by the user can obtain.: comment=The maximum set of privileges a user or any process started by the user can obtain.: comment=Original value specifying whether an account is locked after RETRIES number of failed logins or the number of failed logins allowed before a user's account is locked.: comment=Specifies whether an account is locked after RETRIES number of failed logins or the number of failed logins allowed before a user's account is locked.: comment=The original PAM policy to apply to the user (see pam_user_policy(5)).: comment=The PAM policy to apply to the user (see pam_user_policy(5)).: comment=The original comma-separated list of profiles from prof_attr(4) assigned to the user.: comment=A comma-separated list of profiles from prof_attr(4) assigned to the user.: comment=The original name of one project from project(4) which will used as the default project for the user (see getdefaultproj(3PROJECT) and user_attr(4)).: comment=The name of one project from project(4) which will used as the default project for the user (see getdefaultproj(3PROJECT) and user_attr(4)).: comment=The original roleauth value which specifies whether the assigned role requires a role password or the password of the user assuming the role.: comment=Specifies whether the assigned role requires a role password or the password of the user assuming the role.: comment=The original comma-separated list of role names the user is permitted to assume.: comment=A comma-separated list of role names the user is permitted to assume.: comment=Original value of 'type' which indicates whether the account is for a normal user, one who logs in, or a role.: comment=Indicates whether the account is for a normal user, one who logs in, or a role.: comment=TX: The original maximum label at which the user can operate.: comment=TX: The maximum label at which the user can operate.: comment=TX: original idlecmd value which indicates whether the workstation should lock a user's session if idle for too long.: comment=TX: a keyword to indicate whether the workstation should lock a user's session if idle for too long.: comment=TX: The original idletime value which specifies the maximum number of minutes a workstation can remain idle before the TX window manager attempts the task specified in 'idlecmd'.: comment=TX: The maximum number of minutes a workstation can remain idle before the TX window manager attempts the task specified in 'idlecmd'.: comment=TX: The original minimum label at which the user can log in.: comment=TX: The minimum label at which the user can log in.: comment=The original days and times at which users can access the specified applications and services.: comment=The new days and times at which users can access the specified applications and services.: comment=The original time zone to be used when interpreting times specified in access_times entries.: comment=The original time zone to be used when interpreting times specified in access_times entries.: comment=The list of users updated when a role is removed.: comment=Original supplementary group(4) membership for the user: comment=Supplementary group(4) membership for the user: comment=original list of projects assigned to the user; see project(4): comment=projects assigned to the user or unassigned from user; see project(4): comment=original auto_home(4) entry: comment=entry added to or removed from auto_home(4): comment=authorization required for the action label=AUE_rolemod title=modify a role's login information on the system program=/usr/sbin/rolemod see=rolemod(1M) format=[command]1:text2:[text]3:[user]4:[user]5:[group]6:[group]7:[text]8:[text]9:[text]10:[text]11:[text]12:[text]13:[text]14:[text]15:[text]16:[text]17:[text]18:[text]19:[text]20:[text]21:[text]22:[text]23:[text]24:[text]25:[text]26:[text]27:[text]28:[text]29:[text]30:[text]31:[text]32:[text]33:[text]34:[text]35:[text]36:[text]37:[text]38:[text]39:[text]40:[text]41:[text]42:[text]43:[text]44:[text]45:[text]46:[text]47:[text]48:[text]49:[text]50:[text]51:[text]52:[text]53:[text]54:[newgroups]55:[newgroups]56:[text]57:[text]58:[text]59:[text]60:[uauth]61 comment=command args and optional environment: comment=the name-service repository to be modified (-S): comment=the host or netgroup which qualifies where extended attributes are applicable (-q): comment=user's original login name and uid from passwd(4): comment=user's login name and uid from passwd(4): comment=user's original gid and group name from passwd(4): comment=user's gid and group name from passwd(4): comment=original gecos field from passwd(4): comment=gecos field from passwd(4): comment=original pathname to the home directory from passwd(4): comment=pathname to the home directory from passwd(4): comment=original login shell from passwd(4): comment=login shell from passwd(4), if empty default is /usr/bin/sh: comment=The original account expiration date from shadow(4): comment=The account expiration date from shadow(4): comment=The original value of the maximum number of days between uses that the before the account is locked.: comment=The maximum number of days between uses that the before the account is locked.: comment=The original per-user audit preselection flags as described in audit_flags(5).: comment=The per-user audit preselection flags as described in audit_flags(5).: comment=The original comma-separated list of authenticated profiles from prof_attr(4) assigned to the user.: comment=A comma-separated list of authenticated profiles from prof_attr(4) assigned to the user.: comment=The original comma separated list of authorization names from auth_attr(4).: comment=A comma separated list of authorization names from auth_attr(4).: comment=The original default set of privileges assigned to user's inheritable set upon login (see privileges(5)).: comment=The default set of privileges assigned to user's inheritable set upon login (see privileges(5)).: comment=The original maximum set of privileges a user or any process started by the user can obtain.: comment=The maximum set of privileges a user or any process started by the user can obtain.: comment=Original value specifying whether an account is locked after RETRIES number of failed logins or the number of failed logins allowed before a user's account is locked.: comment=Specifies whether an account is locked after RETRIES number of failed logins or the number of failed logins allowed before a user's account is locked.: comment=The original PAM policy to apply to the user (see pam_user_policy(5)).: comment=The PAM policy to apply to the user (see pam_user_policy(5)).: comment=The original comma-separated list of profiles from prof_attr(4) assigned to the user.: comment=A comma-separated list of profiles from prof_attr(4) assigned to the user.: comment=The original name of one project from project(4) which will used as the default project for the user (see getdefaultproj(3PROJECT) and user_attr(4)).: comment=The name of one project from project(4) which will used as the default project for the user (see getdefaultproj(3PROJECT) and user_attr(4)).: comment=The original roleauth value which specifies whether the assigned role requires a role password or the password of the user assuming the role.: comment=Specifies whether the assigned role requires a role password or the password of the user assuming the role.: comment=The original comma-separated list of role names the user is permitted to assume.: comment=A comma-separated list of role names the user is permitted to assume.: comment=Original value of 'type' which indicates whether the account is for a normal user, one who logs in, or a role.: comment=Indicates whether the account is for a normal user, one who logs in, or a role.: comment=TX: The original maximum label at which the user can operate.: comment=TX: The maximum label at which the user can operate.: comment=TX: original idlecmd value which indicates whether the workstation should lock a user's session if idle for too long.: comment=TX: a keyword to indicate whether the workstation should lock a user's session if idle for too long.: comment=TX: The original idletime value which specifies the maximum number of minutes a workstation can remain idle before the TX window manager attempts the task specified in 'idlecmd'.: comment=TX: The maximum number of minutes a workstation can remain idle before the TX window manager attempts the task specified in 'idlecmd'.: comment=TX: The original minimum label at which the user can log in.: comment=TX: The minimum label at which the user can log in.: comment=The original days and times at which users can access the specified applications and services.: comment=The new days and times at which users can access the specified applications and services.: comment=The original time zone to be used when interpreting times specified in access_times entries.: comment=The original time zone to be used when interpreting times specified in access_times entries.: comment=The list of users updated when a role is removed.: comment=Original supplementary group(4) membership for the user: comment=Supplementary group(4) membership for the user: comment=original list of projects assigned to the user; see project(4): comment=projects assigned to the user or unassigned from user; see project(4): comment=original auto_home(4) entry: comment=entry added to or removed from auto_home(4): comment=authorization required for the action label=AUE_roledel title=delete a role's login from the system program=/usr/sbin/roledel see=roledel(1M) format=[command]1:text2:[text]3:[user]4:[user]5:[group]6:[group]7:[text]8:[text]9:[text]10:[text]11:[text]12:[text]13:[text]14:[text]15:[text]16:[text]17:[text]18:[text]19:[text]20:[text]21:[text]22:[text]23:[text]24:[text]25:[text]26:[text]27:[text]28:[text]29:[text]30:[text]31:[text]32:[text]33:[text]34:[text]35:[text]36:[text]37:[text]38:[text]39:[text]40:[text]41:[text]42:[text]43:[text]44:[text]45:[text]46:[text]47:[text]48:[text]49:[text]50:[text]51:[text]52:[text]53:[text]54:[newgroups]55:[newgroups]56:[text]57:[text]58:[text]59:[text]60:[uauth]61 comment=command args and optional environment: comment=the name-service repository to be modified (-S): comment=the host or netgroup which qualifies where extended attributes are applicable (-q): comment=user's original login name and uid from passwd(4): comment=user's login name and uid from passwd(4): comment=user's original gid and group name from passwd(4): comment=user's gid and group name from passwd(4): comment=original gecos field from passwd(4): comment=gecos field from passwd(4): comment=original pathname to the home directory from passwd(4): comment=pathname to the home directory from passwd(4): comment=original login shell from passwd(4): comment=login shell from passwd(4), if empty default is /usr/bin/sh: comment=The original account expiration date from shadow(4): comment=The account expiration date from shadow(4): comment=The original value of the maximum number of days between uses that the before the account is locked.: comment=The maximum number of days between uses that the before the account is locked.: comment=The original per-user audit preselection flags as described in audit_flags(5).: comment=The per-user audit preselection flags as described in audit_flags(5).: comment=The original comma-separated list of authenticated profiles from prof_attr(4) assigned to the user.: comment=A comma-separated list of authenticated profiles from prof_attr(4) assigned to the user.: comment=The original comma separated list of authorization names from auth_attr(4).: comment=A comma separated list of authorization names from auth_attr(4).: comment=The original default set of privileges assigned to user's inheritable set upon login (see privileges(5)).: comment=The default set of privileges assigned to user's inheritable set upon login (see privileges(5)).: comment=The original maximum set of privileges a user or any process started by the user can obtain.: comment=The maximum set of privileges a user or any process started by the user can obtain.: comment=Original value specifying whether an account is locked after RETRIES number of failed logins or the number of failed logins allowed before a user's account is locked.: comment=Specifies whether an account is locked after RETRIES number of failed logins or the number of failed logins allowed before a user's account is locked.: comment=The original PAM policy to apply to the user (see pam_user_policy(5)).: comment=The PAM policy to apply to the user (see pam_user_policy(5)).: comment=The original comma-separated list of profiles from prof_attr(4) assigned to the user.: comment=A comma-separated list of profiles from prof_attr(4) assigned to the user.: comment=The original name of one project from project(4) which will used as the default project for the user (see getdefaultproj(3PROJECT) and user_attr(4)).: comment=The name of one project from project(4) which will used as the default project for the user (see getdefaultproj(3PROJECT) and user_attr(4)).: comment=The original roleauth value which specifies whether the assigned role requires a role password or the password of the user assuming the role.: comment=Specifies whether the assigned role requires a role password or the password of the user assuming the role.: comment=The original comma-separated list of role names the user is permitted to assume.: comment=A comma-separated list of role names the user is permitted to assume.: comment=Original value of 'type' which indicates whether the account is for a normal user, one who logs in, or a role.: comment=Indicates whether the account is for a normal user, one who logs in, or a role.: comment=TX: The original maximum label at which the user can operate.: comment=TX: The maximum label at which the user can operate.: comment=TX: original idlecmd value which indicates whether the workstation should lock a user's session if idle for too long.: comment=TX: a keyword to indicate whether the workstation should lock a user's session if idle for too long.: comment=TX: The original idletime value which specifies the maximum number of minutes a workstation can remain idle before the TX window manager attempts the task specified in 'idlecmd'.: comment=TX: The maximum number of minutes a workstation can remain idle before the TX window manager attempts the task specified in 'idlecmd'.: comment=TX: The original minimum label at which the user can log in.: comment=TX: The minimum label at which the user can log in.: comment=The original days and times at which users can access the specified applications and services.: comment=The new days and times at which users can access the specified applications and services.: comment=The original time zone to be used when interpreting times specified in access_times entries.: comment=The original time zone to be used when interpreting times specified in access_times entries.: comment=The list of users updated when a role is removed.: comment=Original supplementary group(4) membership for the user: comment=Supplementary group(4) membership for the user: comment=original list of projects assigned to the user; see project(4): comment=projects assigned to the user or unassigned from user; see project(4): comment=original auto_home(4) entry: comment=entry added to or removed from auto_home(4): comment=authorization required for the action label=AUE_userdel_qattrs title=delete qualified attributes from an LDAP user (userdel -q) program=/usr/sbin/userdel see=userdel(1M) format=[command]1:text2:[text]3:[user]4:[user]5:[group]6:[group]7:[text]8:[text]9:[text]10:[text]11:[text]12:[text]13:[text]14:[text]15:[text]16:[text]17:[text]18:[text]19:[text]20:[text]21:[text]22:[text]23:[text]24:[text]25:[text]26:[text]27:[text]28:[text]29:[text]30:[text]31:[text]32:[text]33:[text]34:[text]35:[text]36:[text]37:[text]38:[text]39:[text]40:[text]41:[text]42:[text]43:[text]44:[text]45:[text]46:[text]47:[text]48:[text]49:[text]50:[text]51:[text]52:[text]53:[text]54:[newgroups]55:[newgroups]56:[text]57:[text]58:[text]59:[text]60:[uauth]61 comment=command args and optional environment: comment=the name-service repository to be modified (-S): comment=the host or netgroup which qualifies where extended attributes are applicable (-q): comment=user's original login name and uid from passwd(4): comment=user's login name and uid from passwd(4): comment=user's original gid and group name from passwd(4): comment=user's gid and group name from passwd(4): comment=original gecos field from passwd(4): comment=gecos field from passwd(4): comment=original pathname to the home directory from passwd(4): comment=pathname to the home directory from passwd(4): comment=original login shell from passwd(4): comment=login shell from passwd(4), if empty default is /usr/bin/sh: comment=The original account expiration date from shadow(4): comment=The account expiration date from shadow(4): comment=The original value of the maximum number of days between uses that the before the account is locked.: comment=The maximum number of days between uses that the before the account is locked.: comment=The original per-user audit preselection flags as described in audit_flags(5).: comment=The per-user audit preselection flags as described in audit_flags(5).: comment=The original comma-separated list of authenticated profiles from prof_attr(4) assigned to the user.: comment=A comma-separated list of authenticated profiles from prof_attr(4) assigned to the user.: comment=The original comma separated list of authorization names from auth_attr(4).: comment=A comma separated list of authorization names from auth_attr(4).: comment=The original default set of privileges assigned to user's inheritable set upon login (see privileges(5)).: comment=The default set of privileges assigned to user's inheritable set upon login (see privileges(5)).: comment=The original maximum set of privileges a user or any process started by the user can obtain.: comment=The maximum set of privileges a user or any process started by the user can obtain.: comment=Original value specifying whether an account is locked after RETRIES number of failed logins or the number of failed logins allowed before a user's account is locked.: comment=Specifies whether an account is locked after RETRIES number of failed logins or the number of failed logins allowed before a user's account is locked.: comment=The original PAM policy to apply to the user (see pam_user_policy(5)).: comment=The PAM policy to apply to the user (see pam_user_policy(5)).: comment=The original comma-separated list of profiles from prof_attr(4) assigned to the user.: comment=A comma-separated list of profiles from prof_attr(4) assigned to the user.: comment=The original name of one project from project(4) which will used as the default project for the user (see getdefaultproj(3PROJECT) and user_attr(4)).: comment=The name of one project from project(4) which will used as the default project for the user (see getdefaultproj(3PROJECT) and user_attr(4)).: comment=The original roleauth value which specifies whether the assigned role requires a role password or the password of the user assuming the role.: comment=Specifies whether the assigned role requires a role password or the password of the user assuming the role.: comment=The original comma-separated list of role names the user is permitted to assume.: comment=A comma-separated list of role names the user is permitted to assume.: comment=Original value of 'type' which indicates whether the account is for a normal user, one who logs in, or a role.: comment=Indicates whether the account is for a normal user, one who logs in, or a role.: comment=TX: The original maximum label at which the user can operate.: comment=TX: The maximum label at which the user can operate.: comment=TX: original idlecmd value which indicates whether the workstation should lock a user's session if idle for too long.: comment=TX: a keyword to indicate whether the workstation should lock a user's session if idle for too long.: comment=TX: The original idletime value which specifies the maximum number of minutes a workstation can remain idle before the TX window manager attempts the task specified in 'idlecmd'.: comment=TX: The maximum number of minutes a workstation can remain idle before the TX window manager attempts the task specified in 'idlecmd'.: comment=TX: The original minimum label at which the user can log in.: comment=TX: The minimum label at which the user can log in.: comment=The original days and times at which users can access the specified applications and services.: comment=The new days and times at which users can access the specified applications and services.: comment=The original time zone to be used when interpreting times specified in access_times entries.: comment=The original time zone to be used when interpreting times specified in access_times entries.: comment=The list of users updated when a role is removed.: comment=Original supplementary group(4) membership for the user: comment=Supplementary group(4) membership for the user: comment=original list of projects assigned to the user; see project(4): comment=projects assigned to the user or unassigned from user; see project(4): comment=original auto_home(4) entry: comment=entry added to or removed from auto_home(4): comment=authorization required for the action label=AUE_roledel_qattrs title=delete qualified attributes from a role in LDAP (roledel -q) program=/usr/sbin/roledel see=roledel(1M) format=[command]1:text2:[text]3:[user]4:[user]5:[group]6:[group]7:[text]8:[text]9:[text]10:[text]11:[text]12:[text]13:[text]14:[text]15:[text]16:[text]17:[text]18:[text]19:[text]20:[text]21:[text]22:[text]23:[text]24:[text]25:[text]26:[text]27:[text]28:[text]29:[text]30:[text]31:[text]32:[text]33:[text]34:[text]35:[text]36:[text]37:[text]38:[text]39:[text]40:[text]41:[text]42:[text]43:[text]44:[text]45:[text]46:[text]47:[text]48:[text]49:[text]50:[text]51:[text]52:[text]53:[text]54:[newgroups]55:[newgroups]56:[text]57:[text]58:[text]59:[text]60:[uauth]61 comment=command args and optional environment: comment=the name-service repository to be modified (-S): comment=the host or netgroup which qualifies where extended attributes are applicable (-q): comment=user's original login name and uid from passwd(4): comment=user's login name and uid from passwd(4): comment=user's original gid and group name from passwd(4): comment=user's gid and group name from passwd(4): comment=original gecos field from passwd(4): comment=gecos field from passwd(4): comment=original pathname to the home directory from passwd(4): comment=pathname to the home directory from passwd(4): comment=original login shell from passwd(4): comment=login shell from passwd(4), if empty default is /usr/bin/sh: comment=The original account expiration date from shadow(4): comment=The account expiration date from shadow(4): comment=The original value of the maximum number of days between uses that the before the account is locked.: comment=The maximum number of days between uses that the before the account is locked.: comment=The original per-user audit preselection flags as described in audit_flags(5).: comment=The per-user audit preselection flags as described in audit_flags(5).: comment=The original comma-separated list of authenticated profiles from prof_attr(4) assigned to the user.: comment=A comma-separated list of authenticated profiles from prof_attr(4) assigned to the user.: comment=The original comma separated list of authorization names from auth_attr(4).: comment=A comma separated list of authorization names from auth_attr(4).: comment=The original default set of privileges assigned to user's inheritable set upon login (see privileges(5)).: comment=The default set of privileges assigned to user's inheritable set upon login (see privileges(5)).: comment=The original maximum set of privileges a user or any process started by the user can obtain.: comment=The maximum set of privileges a user or any process started by the user can obtain.: comment=Original value specifying whether an account is locked after RETRIES number of failed logins or the number of failed logins allowed before a user's account is locked.: comment=Specifies whether an account is locked after RETRIES number of failed logins or the number of failed logins allowed before a user's account is locked.: comment=The original PAM policy to apply to the user (see pam_user_policy(5)).: comment=The PAM policy to apply to the user (see pam_user_policy(5)).: comment=The original comma-separated list of profiles from prof_attr(4) assigned to the user.: comment=A comma-separated list of profiles from prof_attr(4) assigned to the user.: comment=The original name of one project from project(4) which will used as the default project for the user (see getdefaultproj(3PROJECT) and user_attr(4)).: comment=The name of one project from project(4) which will used as the default project for the user (see getdefaultproj(3PROJECT) and user_attr(4)).: comment=The original roleauth value which specifies whether the assigned role requires a role password or the password of the user assuming the role.: comment=Specifies whether the assigned role requires a role password or the password of the user assuming the role.: comment=The original comma-separated list of role names the user is permitted to assume.: comment=A comma-separated list of role names the user is permitted to assume.: comment=Original value of 'type' which indicates whether the account is for a normal user, one who logs in, or a role.: comment=Indicates whether the account is for a normal user, one who logs in, or a role.: comment=TX: The original maximum label at which the user can operate.: comment=TX: The maximum label at which the user can operate.: comment=TX: original idlecmd value which indicates whether the workstation should lock a user's session if idle for too long.: comment=TX: a keyword to indicate whether the workstation should lock a user's session if idle for too long.: comment=TX: The original idletime value which specifies the maximum number of minutes a workstation can remain idle before the TX window manager attempts the task specified in 'idlecmd'.: comment=TX: The maximum number of minutes a workstation can remain idle before the TX window manager attempts the task specified in 'idlecmd'.: comment=TX: The original minimum label at which the user can log in.: comment=TX: The minimum label at which the user can log in.: comment=The original days and times at which users can access the specified applications and services.: comment=The new days and times at which users can access the specified applications and services.: comment=The original time zone to be used when interpreting times specified in access_times entries.: comment=The original time zone to be used when interpreting times specified in access_times entries.: comment=The list of users updated when a role is removed.: comment=Original supplementary group(4) membership for the user: comment=Supplementary group(4) membership for the user: comment=original list of projects assigned to the user; see project(4): comment=projects assigned to the user or unassigned from user; see project(4): comment=original auto_home(4) entry: comment=entry added to or removed from auto_home(4): comment=authorization required for the action label=AUE_groupadd title=add a new group to the system program=/usr/sbin/groupadd see=groupadd(1M) format=text1:group2:[text]3:uauth4 comment=the name-service repository to be modified (-S): comment=name of group added or modified (with a new group name and/or a new group ID): comment=list of users added to the group: comment=authorization required for the action label=AUE_groupmod title=modify a group's information on the system program=/usr/sbin/groupmod see=groupmod(1M) format=text1:group2:[text]3:[group]4:[text]5:uauth6 comment=the name-service repository to be modified (-S): comment=name of existing group modified by groupmod(1M): comment=list of users originally assigned to the group: comment=new group name (groupmod -n) and/or group ID (groupmod -g) if applicable: comment=new list of users assigned to the group: comment=authorization required for the action label=AUE_groupdel title=delete a group from the system program=/usr/sbin/groupdel see=groupdel(1M) format=text1:group2:[text]3:uauth4 comment=the name-service repository to be modified (-S): comment=name of existing group removed by groupdel(1M): comment=list of users originally assigned to the group: comment=authorization required for the action label=AUE_puppet_session_start title=puppet: start of session program=/usr/sbin/puppet see=puppet(8) format=user label=AUE_puppet_session_end title=puppet: end of session program=/usr/sbin/puppet see=puppet(8) format=user label=AUE_zone_reconf_start title=start live zone reconfiguration program=/usr/lib/zones/zoneadmd see=zoneadmd(1M) format=zonename1:[text]2 comment=affected zone: comment=error message label=AUE_zone_reconf_end title=live zone reconfiguration end program=/usr/lib/zones/zoneadmd see=zoneadmd(1M) format=zonename1:[text]2 comment=affected zone: comment=error message label=AUE_zone_fs_mount title=mount filesystem program=/usr/lib/zones/zoneadmd see=zoneadmd(1M) format=path1:[attr]2:text3:[attr]4:[path]5:[attr]6:[text]7:text8:zonename9:[text]10 comment=mount point: comment=mount point attributes: comment=mount special: comment=special attributes: comment=raw device: comment=raw device attributes: comment=mount options: comment=filesystem type: comment=target zone: comment=error message label=AUE_zone_fs_unmount title=unmount filesystem program=/usr/lib/zones/zoneadmd see=zoneadmd(1M) format=path1:[attr]2:text3:[attr]4:zonename5:[text]6 comment=mount point: comment=mount point attributes: comment=special path: comment=special attributes: comment=target zone: comment=error message label=AUE_zone_fs_remount title=remount filesystem program=/usr/lib/zones/zoneadmd see=zoneadmd(1M) format=path1:[attr]2:text3:[attr]4:[path]5:[attr]6:[text]7:text8:zonename9:[text]10 comment=mount point: comment=mount point attributes: comment=mount special: comment=special attributes: comment=raw device: comment=raw device attributes: comment=mount options: comment=filesystem type: comment=target zone: comment=error message label=AUE_zone_anet_add title=add anet program=/usr/lib/zones/zoneadmd see=zoneadmd(1M) format=[text]1:text2:text3:[text]4:[text]5:[text]6:[text]7:[text]8:[text]9:[text]10:zonename11:[text]12 comment=link name: comment=lower link: comment=MAC address(es): comment=auto/randomly generated MAC address(es): comment=prefixes of auto/random MAC address(es): comment=MAC slot(s): comment=InfiniBand partition key: comment=VLAN tag identifier: comment=vnic options: comment=device id: comment=target zone: comment=error message label=AUE_zone_anet_remove title=remove anet program=/usr/lib/zones/zoneadmd see=zoneadmd(1M) format=[text]1:[text]2:zonename3:[text]4 comment=resource identifier: comment=device id: comment=affected zone: comment=error message label=AUE_zone_anet_modify title=modify anet program=/usr/lib/zones/zoneadmd see=zoneadmd(1M) format=[text]1:text2:text3:[text]4:[text]5:[text]6:[text]7:[text]8:[text]9:[text]10:zonename11:[text]12 comment=link name: comment=lower link: comment=MAC address(es): comment=auto/randomly generated MAC address(es): comment=prefixes of auto/random MAC address(es): comment=MAC slot(s): comment=InfiniBand partition key: comment=VLAN tag identifier: comment=vnic options: comment=device id: comment=target zone: comment=error message label=AUE_zone_net_add title=add net program=/usr/lib/zones/zoneadmd see=zoneadmd(1M) format=text1:[text]2:[text]3:zonename4:[text]5 comment=ph ysical interface: comment=IP address (shared-IP zones only): comment=device id: comment=target zone: comment=error message label=AUE_zone_net_remove title=remove net program=/usr/lib/zones/zoneadmd see=zoneadmd(1M) format=text1:[text]2:[text]3:zonename4:[text]5 comment=ph ysical interface: comment=IP address (shared-IP zones only): comment=device id: comment=target zone: comment=error message label=AUE_zone_device_add title=add device(s) program=/usr/lib/zones/zoneadmd see=zoneadmd(1M) format=fmri1:[text]2:[text]3:zonename4:[text]5 comment=device pattern: comment=device properties: comment=device id: comment=target zone: comment=error message label=AUE_zone_device_remove title=remove device(s) program=/usr/lib/zones/zoneadmd see=zoneadmd(1M) format=[text]1:[text]2:zonename3:[text]4 comment=resource identifier: comment=device id: comment=affected zone: comment=error message label=AUE_zone_capped_mem_set title=set memory cap program=/usr/lib/zones/zoneadmd see=zoneadmd(1M) format=text1:zonename2:[text]3 comment=memory cap: comment=target zone: comment=error message label=AUE_zone_capped_mem_clear title=clear memory cap program=/usr/lib/zones/zoneadmd see=zoneadmd(1M) format=zonename1:[text]2 comment=affected zone: comment=error message label=AUE_zone_pool_bind title=resource pool bind program=/usr/lib/zones/zoneadmd see=zoneadmd(1M) format=text1:zonename2:[text]3 comment=dedicated cpu pool: comment=target zone: comment=error message label=AUE_zone_dedicated_cpu_bind title=dedicated resource pool bind program=/usr/lib/zones/zoneadmd see=zoneadmd(1M) format=text1:text2:text3:[text]4:zonename5:[text]6 comment=dedicated cpu pool: comment=minimum of cpus: comment=maximum of cpus: comment=importance: comment=target zone: comment=error message label=AUE_zone_dedicated_cpu_remove title=remove dedicated resource pool program=/usr/lib/zones/zoneadmd see=zoneadmd(1M) format=zonename1:[text]2 comment=affected zone: comment=error message label=AUE_zone_sched_set title=set scheduler class program=/usr/lib/zones/zoneadmd see=zoneadmd(1M) format=text1:zonename2:[text]3 comment=scheduling class: comment=target zone: comment=error message label=AUE_zone_rctl_set title=set resource control program=/usr/lib/zones/zoneadmd see=zoneadmd(1M) format=text1:text2:text3:text4:zonename5:[text]6 comment=rctl name: comment=rctl privilege: comment=rctl action: comment=rctl limit: comment=target zone: comment=error message label=AUE_zone_rctl_clear title=clear resource control program=/usr/lib/zones/zoneadmd see=zoneadmd(1M) format=[text]1:[text]2:zonename3:[text]4 comment=resource identifier: comment=device id: comment=affected zone: comment=error message label=AUE_ibmgmtd_create_vhca title=create InfiniBand virtual HCA program=/usr/sbin/ibmgmtd see=ibmgmtd(1M);ibadm(1M) format=uauth1:text2 comment=authorization used: comment=HCA name (e.g., "hermon0.vhca2") label=AUE_ibmgmtd_create_vhca_f title=forced create InfiniBand virtual HCA program=/usr/sbin/ibmgmtd see=ibmgmtd(1M);ibadm(1M) format=uauth1:text2 comment=authorization used: comment=HCA name (e.g., "hermon0.vhca2") label=AUE_ibmgmtd_delete_hca title=delete InfiniBand HCA program=/usr/sbin/ibmgmtd see=ibmgmtd(1M);ibadm(1M) format=uauth1:text2 comment=authorization used: comment=HCA name (e.g., "hermon0.vhca2") label=AUE_ibmgmtd_delete_hca_f title=forced delete InfiniBand HCA program=/usr/sbin/ibmgmtd see=ibmgmtd(1M);ibadm(1M) format=uauth1:text2 comment=authorization used: comment=HCA name (e.g., "hermon0.vhca2") label=AUE_ibmgmtd_set_hcaprop title=set InfiniBand HCA properties program=/usr/sbin/ibmgmtd see=ibmgmtd(1M);ibadm(1M) format=uauth1:text2:[text]3:[text]4:[text]5:[text]6:[text]7:[text]8 comment=authorization used: comment=HCA name (e.g., "hermon0"): comment=old iov property value ("on", "off", or "--"; "--" indicates no value previously specified): comment=new iov property value ("on", or "off"): comment=old max-vhcas property value (integer or "--"; "--" indicates no value previously specified): comment=new max-vhcas property value (integer): comment=old smi-enabled property value ("on", "off", "readonly" or "--"; "--" indicates no value previously specified): comment=new smi-enabled property value ("on", "off", "readonly" or "--"; label=AUE_ibmgmtd_set_hcaprop_f title=forced set InfiniBand HCA properties program=/usr/sbin/ibmgmtd see=ibmgmtd(1M);ibadm(1M) format=uauth1:text2:[text]3:[text]4:[text]5:[text]6:[text]7:[text]8 comment=authorization used: comment=HCA name (e.g., "hermon0"): comment=old iov property value ("on", "off", or "--"; "--" indicates no value previously specified): comment=new iov property value ("on", or "off"): comment=old max-vhcas property value (integer or "--"; "--" indicates no value previously specified): comment=new max-vhcas property value (integer): comment=old smi-enabled property value ("on", "off", "readonly" or "--"; "--" indicates no value previously specified): comment=new smi-enabled property value ("on", "off", "readonly" or "--"; label=AUE_ibmgmtd_reset_hcaprop title=reset InfiniBand HCA properties program=/usr/sbin/ibmgmtd see=ibmgmtd(1M);ibadm(1M) format=uauth1:text2:[text]3:[text]4:[text]5 comment=authorization used: comment=HCA name (e.g., "hermon0"): comment=old iov property value ("on", "off", or "--"; "--" indicates no value previously specified): comment=old max-vhcas property value (integer or "--"; "--" indicates no value previously specified): comment=old smi-enabled property value ("on", "off", "readonly" or "--"; "--" indicates no value previously specified) label=AUE_ibmgmtd_reset_hcaprop_f title=forced reset InfiniBand HCA properties program=/usr/sbin/ibmgmtd see=ibmgmtd(1M);ibadm(1M) format=uauth1:text2:[text]3:[text]4:[text]5 comment=authorization used: comment=HCA name (e.g., "hermon0"): comment=old iov property value ("on", "off", or "--"; "--" indicates no value previously specified): comment=old max-vhcas property value (integer or "--"; "--" indicates no value previously specified): comment=old smi-enabled property value ("on", "off", "readonly" or "--"; "--" indicates no value previously specified) label=AUE_ibmgmtd_enable_iov title=enable InfiniBand HCA IOV program=/usr/sbin/ibmgmtd see=ibmgmtd(1M);ibadm(1M) format=uauth1:text2:text3 comment=authorization used: comment=HCA name (e.g., "hermon0"): comment=old iov property value ("on", "off", or "--"; "--" indicates no value previously specified) label=AUE_ibmgmtd_enable_iov_f title=forced enable InfiniBand HCA IOV program=/usr/sbin/ibmgmtd see=ibmgmtd(1M);ibadm(1M) format=uauth1:text2:text3 comment=authorization used: comment=HCA name (e.g., "hermon0"): comment=old iov property value ("on", "off", or "--"; "--" indicates no value previously specified) label=AUE_ibmgmtd_disable_iov title=disable InfiniBand HCA IOV program=/usr/sbin/ibmgmtd see=ibmgmtd(1M);ibadm(1M) format=uauth1:text2:text3 comment=authorization used: comment=HCA name (e.g., "hermon0"): comment=old iov property value ("on", "off", or "--"; "--" indicates no value previously specified) label=AUE_ibmgmtd_disable_iov_f title=forced disable InfiniBand HCA IOV program=/usr/sbin/ibmgmtd see=ibmgmtd(1M);ibadm(1M) format=uauth1:text2:text3 comment=authorization used: comment=HCA name (e.g., "hermon0"): comment=old iov property value ("on", "off", or "--"; "--" indicates no value previously specified) label=AUE_ibmgmtd_set_portprop title=set InfiniBand vHCA port properties program=/usr/sbin/ibmgmtd see=ibmgmtd(1M);ibadm(1M) format=uauth1:text2:text3:text4:text5 comment=authorization used: comment=hca name (e.g., "hermon0.vhca2"): comment=port number: comment=old pkeys property value (list of hex strings, "auto", or "--"; "--" indicates no value previously specified): comment=new pkeys property value (list of hex strings, or "auto") label=AUE_ibmgmtd_set_portprop_f title=forced set InfiniBand vHCA port properties program=/usr/sbin/ibmgmtd see=ibmgmtd(1M);ibadm(1M) format=uauth1:text2:text3:text4:text5 comment=authorization used: comment=hca name (e.g., "hermon0.vhca2"): comment=port number: comment=old pkeys property value (list of hex strings, "auto", or "--"; "--" indicates no value previously specified): comment=new pkeys property value (list of hex strings, or "auto") label=AUE_ibmgmtd_reset_portprop title=reset InfiniBand vHCA port properties program=/usr/sbin/ibmgmtd see=ibmgmtd(1M);ibadm(1M) format=uauth1:text2:text3:text4 comment=authorization used: comment=hca name (e.g., "hermon0.vhca2"): comment=port number: comment=old pkeys property value (list of hex strings, "auto", or "--"; "--" indicates no value previously specified) label=AUE_ibmgmtd_reset_portprop_f title=forced reset InfiniBand vHCA port properties program=/usr/sbin/ibmgmtd see=ibmgmtd(1M);ibadm(1M) format=uauth1:text2:text3:text4 comment=authorization used: comment=hca name (e.g., "hermon0.vhca2"): comment=port number: comment=old pkeys property value (list of hex strings, "auto", or "--"; "--" indicates no value previously specified) label=AUE_zone_device_modify title=modify device(s) program=/usr/lib/zones/zoneadmd see=zoneadmd(1M) format=fmri1:[text]2:[text]3:zonename4:[text]5 comment=device pattern: comment=device properties: comment=device id: comment=target zone: comment=error message