I'm currently setting up a RHEL 7 system to comply with DFARS rules. I've used logwatch in the past for monitoring logs and it has been quite useful. However, when I set up required audit rulesets in Auditd, logwatch stops working. I have a cron set up to run logwatch periodically, and it just stops reporting everything unless I remove the rules from Auditd. I'm using logwatch 7.4.0 that comes in the RedHat repositories. Has anyone encountered this before?