12 lines
193 B
HCL

# Allow enabling of audit logging to file
path "sys/audit/file"
{
capabilities = ["update", "sudo"]
}
# Allow listing of audit devices
path "sys/audit"
{
capabilities = ["read", "sudo"]
}