
 Here is an explanation of what all the different files do:


 audispd_conf.c
 audispd_conf.h

  These are the files for the conf.c config. file parser, for the dispatcher.

 auditd_audispd_conf.c
 auditd_audispd_conf.h

  These are the files for the auditd like config. file parser, for the
dispatcher.

 autoconf.h

  This is a hack to convert the auditd autoconf defines into a form that is
usable by the dispatcher, including some "recent Linux" assumptions. This
will go away as the autoconf stuff for audispd goes into the top level.

 conf.c
 conf.h
 conf_inline.c
 opt.c
 opt.h
 opt_conf.c
 opt_conf.h
 opt_policy.c
 opt_policy.h
 opt_policy_inline.c
 opt_serv.c
 opt_serv.h

  These are all reused config. parser files, nothing specific to audispd is
in here, these functions are almost entirely only used at initialization time.

 cntl.c
 cntl.h

  This is reused daemon code to provide a "controller" interface, currently
you'll need the and-httpd-tools package to get and-cntl ... although it could
be done manually. If you don't have a contoller socket file, this is unused
code.

 evnt.c
 evnt.h
 evnt_poll.c
 evnt_poll.h

  This is reused daemon code to handle socket events, along with some
higher level "shortcut" helper functions.

 audispd.c
 audispd.h

  This is the main part of the audispd code, take input from a single socket
and blast it out to multiple other sockets. It also starts/restarts the
managed connections.

