The functionality described in this man page is available only if the Basic Security Module (BSM) has been enabled. See bsmconv(1M) for more information.
The fields for each user entry are separated by colons. Each user is separated from the next by a newline. audit_user does not have general read permission.
Each entry in the audit_user file has the form:
other:lo,ad:io,cl fred:lo,ex,+fc,-fr,-fa:io,cl ethyl:lo,ex,nt:io,cl
/etc/security/audit_user/etc/passwd