https://github.com/linux-audit/audit-testsuite
The audit-testsuite project provides a simple, self-contained regression test suite for the Linux Kernel's audit subsystem.
The test suite's source repository currently lives on GitHub at the following URL:
The audit-testsuite requires the audit userspace, a C compiler (gcc), Perl 5, and some additional Perl modules (see the list below). Some tests also require 32-bit glibc packages.
To install all these dependencies on your distribution on x86_64 architecture please follow the instructions below.
# yum install audit \
gcc \
glibc.i686 \
glibc-devel.i686 \
libgcc.i686 \
perl \
perl-Test \
perl-Test-Harness \
perl-File-Which \
perl-Time-HiRes \
nmap-ncat
# dnf install audit \
gcc \
glibc.i686 \
glibc-devel.i686 \
perl \
perl-Test \
perl-Test-Harness \
perl-File-Which \
perl-Time-HiRes \
nmap-ncat
# apt-get install auditd \
build-essential \
libc6-i386 \
perl-modules \
netcat
Please notice that tests are changing kernel audit rules and hence it might be a good idea to back them up prior testing and restore them afterwards. The tests need to be executed as root.
All of the commands listed below should be executed from the audit-testsuite top level directory.
# make
# make list
# make test
# TESTS="test1 test2 ..." make -e test
# ATS_DEBUG=1 make test