Information
sudo can use a custom log file
Rationale:
A sudo log file simplifies auditing of sudo commands. This also provides easier isolation to prevent disclosure of sensitive data.
Impact:
Editing the sudo configuration incorrectly can cause sudo to stop functioning
Solution
Edit the file /etc/sudoers or a file in /etc/sudoers.d/ with visudo or visudo -f <PATH TO FILE> and add the following line:
Defaults logfile='<PATH TO CUSTOM LOG FILE>'
Example:
Defaults logfile='/var/log/sudo.log'