SUDO Logs - JSON version
Monitor SUDO Logs with JSON Logging
Linux SUDO Logs
Visualize Linux SUDO accepted/rejected events using promtail
and loki
.
How to use this dashboard with explanation in blog: https://voidquark.com/blog/parsing-sudo-logs-with-grafana-loki ( SUDO JSON Logging configuration, Query explained, Alertmanager rule ).
Rev1 Tested on RHEL9.2
Rev2 Tested on RHEL9.3+
Source Code
GitHub repo link: https://github.com/voidquark/grafana-dashboards
Author
Created by VoidQuark
Data source config
Collector config:
Upload an updated version of an exported dashboard.json file from Grafana
Revision | Description | Created | |
---|---|---|---|
Download |

Grafana Loki (self-hosted)

Easily monitor Grafana Loki (self-hosted), a horizontally scalable, highly available, multi-tenant log aggregation system inspired by Prometheus, with Grafana Cloud's out-of-the-box monitoring solution.
Learn more