Hello!
I've set up the auditd service in FreeBSD 13.2-RELEASE amd64.
in rc.conf
auditd_enable="YES"
in /etc/security/audit_control
4 dir:/var/audit
5 dist:off
6 flags:lo,aa,ad,ap,ex,fa,fm,pc
7 minfree:5
8 naflags:lo,aa
9 policy:cnt,argv
10 filesz:100M
11 expire-after:10000M...