Bug 2043951

Summary: logwatch "secure" service should ignore sudo messages since they're audited separately by the "sudo" service
Product: Red Hat Enterprise Linux 8 Reporter: Jonathan Kamens <jik>
Component: logwatchAssignee: Pavel Šimovec <psimovec>
Status: ON_QA --- QA Contact: Karel Volný <kvolny>
Severity: unspecified Docs Contact:
Priority: unspecified    
Version: CentOS StreamCC: bstinson, jwboyer, psimovec
Target Milestone: rcKeywords: Triaged
Target Release: ---   
Hardware: Unspecified   
OS: Unspecified   
Whiteboard:
Fixed In Version: logwatch-7.4.3-18.el8 Doc Type: If docs needed, set a value
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: Type: Bug
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:

Description Jonathan Kamens 2022-01-22 18:18:32 UTC
Logwatch reports on sudo twice, once in the "secure" service and once in the "sudo" service. This redundancy is unnecessary. It should be fixed by adding sudo to the ignored services in /usr/share/logwatch/default.conf/services/secure.conf.