Is there any methods that would allow you to scan a target system to figure out what the auditing policy is set as? Similar to NMAP and how it scans a range of ports and reports back, is it possible while connected to the same LAN, to detect a system's audit policy ?
tldr; I want to see if the server I am accessing is logging activity.
				
			tldr; I want to see if the server I am accessing is logging activity.
			
				Last edited: 
			
		
	
								
								
									
	
								
							
							 
	 
 
		