In the Identity Suite Virtual Appliance (vApp) environment, the audit.log file located in /var/log/audit/ may stop generating new entries or fail to rotate according to the defined configuration.
This prevents effective security monitoring and can lead to disk space exhaustion if rotation logic fails.
Identity Suite Virtual Appliance 14.5
This issue typically occurs if the auditd service becomes unresponsive or if the underlying service fails to initialize correctly after a system reboot or configuration change. In some cases, a full /var partition can also prevent the service from writing or rotating log files.
auditd service using the following commands:service auditd stopservice auditd startaudit.log file is now receiving updates by running:tail -f /var/log/audit/audit.log/var partition is not at 100% capacity.To speak with a customer representative or a Support Engineer see . Scroll to the bottom of the page and click on your respective region.