SUDO audit events

Question asked by alberto.tenmoron on Oct 24, 2012
we have created new security rules for SUDO tasks. We have noticed that the events that appears in the endpoint local audit file are not sent by the report agent to the Distribution Server collector.

We are not sure if wahave to enable any class for it, or perhaps set a special audit filer.

Any idea?

Thanks a lot