sudo can use a custom log file Rationale: A sudo log file simplifies auditing of sudo commands. This also provides easier isolation to prevent disclosure of sensitive data. Impact: Editing the sudo configuration incorrectly can cause sudo to stop functioning
Solution
Edit the file /etc/sudoers or a file in /etc/sudoers.d/ with visudo or visudo -f <PATH TO FILE> and add the following line: Defaults logfile='<PATH TO CUSTOM LOG FILE>' Example: Defaults logfile='/var/log/sudo.log'