Logging failed attempts

2009-09-03 Thread Alan Shearer
Howdy, I was curious if there was a way to setup logging of *failed* attempts to login to a PPTP Server hosted on freebsd 7? I can only see successful logins. On a similar note is there a way to log successful and failed attempts to SSH into freebsd? Thanks for the help! Alan

ftpd - Logging and resolving IP

2009-07-20 Thread Cristiano Deana
Hi, i use ftpd (base system), logging login, xfer, auth failure. What i need is to log the IP address of the client, not the hostname. I looked in ftpd(8) ma it seems it's not possible to disable the reverse resolution. Any idea? Thanks in advance -- Cris, member of G.U.F.I Italian FreeBSD

Re: ftpd - Logging and resolving IP

2009-07-20 Thread pluknet
2009/7/20 Cristiano Deana cristiano.de...@gmail.com: Hi, i use ftpd (base system), logging login, xfer, auth failure. What i need is to log the IP address of the client, not the hostname. I looked in ftpd(8) ma it seems it's not possible to disable the reverse resolution. Any idea

skype12 login problem and debug logging

2009-06-09 Thread Toomas Aas
help. I'd like to turn to Skype support for help, so I tried to turn on logging as described here: http://lnk.nu/developer.skype.com/ww4 ... but the log file is not created, so it's hard to expect any help from the folks at Skype. Does anyone know how to turn on logging in this version

Help logging kernel messages after failed resume

2009-05-27 Thread Gonzalo Nemmi
OK, it goes like this: Dell Inspiron 1318, boot -v can be found in here: http://pastebin.com/f3a1c204a sysctl -a | grep hw.acpi | sort can be found in here: http://pastebin.com/fcfc0035 First shot: Try the Livefs CD, myhost# acpiconf -s 3 WORKS !!! The machine goes into suspend state and

Re: Help logging kernel messages after failed resume

2009-05-27 Thread Mel Flynn
On Thursday 28 May 2009 00:43:56 Gonzalo Nemmi wrote: Note: I can ssh into the notebook, then su - and issue acpiconf -s 3, but I can't get the notebook to WOL .. so .. I have to press the power button on the notebook to get it to resume and as a consecuence, those messages are sent to stdout

isc-dhcp logging and status query

2009-05-07 Thread Pieter Donche
FreeBSD7-amd64: I set up /usr/ports/net/isc-dhcp30-server for static IP addresses (based on the MacAddress) This works, but I wonder where I can see information of the status? 1. The doc says I should see dhcp log messages (default in /var/log/messages) but I see nothing about dhcp in

Re: isc-dhcp logging and status query

2009-05-07 Thread Mel Flynn
On Thursday 07 May 2009 12:00:10 Pieter Donche wrote: 2. Is there any tool to see what Statically assigned IP address are handed out at a given time? (I also see nothing in /var/db/dhcpd/dhcpd.leases file execpt comments) Add omapi-port 7911; to dhcpd.conf. Then, as follows: $ omshell

Re: Uptime logging with (maybe) ppp's log functionality

2008-12-17 Thread Mel
On Monday 15 December 2008 15:09:31 Polytropon wrote: Hi! I'm going to setup a system with a dial-up modem for sporadic Internet access; a provider that charges per second online time is used. Is there a way ppp (which is used for dialing) can log the online time (or at least the

Uptime logging with (maybe) ppp's log functionality

2008-12-15 Thread Polytropon
Hi! I'm going to setup a system with a dial-up modem for sporadic Internet access; a provider that charges per second online time is used. Is there a way ppp (which is used for dialing) can log the online time (or at least the connection's start and stop time) so the costs can be calculated?

Re: Uptime logging with (maybe) ppp's log functionality

2008-12-15 Thread Wojciech Puchar
I'm going to setup a system with a dial-up modem for sporadic Internet access; a provider that charges per second online time is used. Is there a way ppp (which is used for dialing) can log the online time (or at least the connection's start and stop time) so the costs can be calculated?

Re: Uptime logging with (maybe) ppp's log functionality

2008-12-15 Thread Polytropon
Many thanks for your ideas. I think I'll use #2 and have start and stop time recorded in epoch format (because its easy to get the substraction result instead of fiddling around with date's ymdhms parameters). This is because I'm not very familiar with ppp's logs, and maybe they provide the

syslogd logging

2008-10-19 Thread fquest
Is there a way to re-configure how syslogd presents the date in the syslog files? Presently, the date is usually MMM DD I would prefer MMDD however I cannot find anywhere where this is possible. TIA, Jim ___ freebsd-questions@freebsd.org

Re: syslogd logging

2008-10-19 Thread Peter Boosten
fquest wrote: Is there a way to re-configure how syslogd presents the date in the syslog files? Presently, the date is usually MMM DD I would prefer MMDD however I cannot find anywhere where this is possible. It isn't. Consider syslog-ng from the ports. Peter --

FreeBSD is locking and logging out

2008-09-20 Thread Desmond Chapman
I've had my screen lock a few times and log out automatically once. If it's any help, it's happened while running qemu. _ See how Windows Mobile brings your life together—at home, work, or on the go.

IPFW uid logging...

2008-09-08 Thread Dan Mahoney, System Admin
Hey all, I have the following rule set up in ipfw to limit the exposure of bad php scripts and trojans that try to send mail directly. allow tcp from any to any dst-port 25 uid root deny log tcp from any to any dst-port 25 out However, the log messages I get look like this: Sep 8 13:21:11

Re: IPFW uid logging...

2008-09-08 Thread Dan Nelson
to ipfw_log() so that ipfw_chk() can pass it the ugid_lookup flag and a pointer to the fw_ugid_cache struct. Then you can edit ipfw_log to print the contents of that struct if ugid_lookup==1. That would result in the logging of uid for any failed packet that had to go through a uid check on the way

Re: IPFW uid logging...

2008-09-08 Thread Dan Mahoney, System Admin
more arguments to ipfw_log() so that ipfw_chk() can pass it the ugid_lookup flag and a pointer to the fw_ugid_cache struct. Then you can edit ipfw_log to print the contents of that struct if ugid_lookup==1. That would result in the logging of uid for any failed packet that had to go through a uid

Re: IPFW uid logging...

2008-09-08 Thread Jeremy Chadwick
. That would result in the logging of uid for any failed packet that had to go through a uid check on the way to the deny rule. Okay, so if it's fairly easy to do, the question would be since I don't feel right hacking in this change myself -- how could I propose this as a feature? It's

Network Card issues logging and aMule

2008-08-28 Thread disappearedng
by amule under ~/.aMule (logfile and logfile.bak) normally doesn't tell you much about it. Thank you -- View this message in context: http://www.nabble.com/Network-Card-issues-logging-and-aMule-tp19209461p19209461.html Sent from the freebsd-questions mailing list archive at Nabble.com

Re: Network Card issues logging and aMule

2008-08-28 Thread Wojciech Puchar
Hi everyone I am currently using Marvell Yukon's 88E8053 Network card and after a few searches on google, i noticed that this card has a few issues. Fortunately, I could use the network card without the need to do any manual labor. However, I noticed that the network card crashes after perhaps 72

ftpd and sshd logging of domain names

2008-08-24 Thread Len Conrad
Are there are any flags or tricks to get these two daemons to log IP addresses of failed login attempts, rather than PTR hostnames? man ftpd man sshd ... show nothing, afaics. thanks Len ___ freebsd-questions@freebsd.org mailing list

Re: ftpd and sshd logging of domain names

2008-08-24 Thread Polytropon
there is a solution: 1. Edit /etc/inetd.conf ftp stream tcp nowait root/usr/libexec/ftpd ftpd -ll ftp stream tcp6nowait root/usr/libexec/ftpd ftpd -ll The flags -ll enable extended logging. 2. Edit /etc/syslog.conf: !ftpd

Re: ftpd and sshd logging of domain names

2008-08-24 Thread Len Conrad
17:05:30 mx1 ftpd[1625]: FTP LOGIN FAILED FROM domain.tld, user The flags -ll enable extended logging. 2. Edit /etc/syslog.conf: !ftpd *.* /var/log/ftpd.log 3. Create the log file # touch /var/log/ftpd.log same

Re: ftpd and sshd logging of domain names

2008-08-24 Thread Polytropon
On Sun, 24 Aug 2008 17:18:55 -0500, Len Conrad [EMAIL PROTECTED] wrote: with -ll, ftpd still logs failures as auth.log as same in ftpd.log [The IPs] they are not logged. I did the three steps I mentioned and have failures with IPs logged in /var/log/ftpd.log, for example: connection

Re: ftpd and sshd logging of domain names

2008-08-24 Thread Len Conrad
with -ll, ftpd still logs failures as auth.log as same in ftpd.log [The IPs] they are not logged. I did the three steps I mentioned and have failures with IPs logged in /var/log/ftpd.log, for example: connection from 79.165.190.70 (79.165.190.70) FTP LOGIN FAILED FROM

Postfix logging some OTP related permission denied messages

2008-06-29 Thread आशीष शुक्ल Ashish Shukla
Hi, I'm running 7.0-RELEASE-p2 (amd64). I'm running Postfix 2.5.1_2,1 mail server instead of the default Sendmail which ships with base distribution. My mail server is working fine with no issues except that I noticed that some messages in /var/log/messages: 88 Jun 29 03:12:45

Re: Postfix logging some OTP related permission denied messages

2008-06-29 Thread Michael Powell
आशीष शुक्ल Ashish Shukla wrote: Hi, I'm running 7.0-RELEASE-p2 (amd64). I'm running Postfix 2.5.1_2,1 mail server instead of the default Sendmail which ships with base distribution. My mail server is working fine with no issues except that I noticed that some messages in

Re: Postfix logging some OTP related permission denied messages

2008-06-29 Thread Ashish Shukla आशीष शुक्ल
,--- Michael Powell writes: | आशीष शुक्ल Ashish Shukla wrote: || Hi, || || I'm running 7.0-RELEASE-p2 (amd64). I'm running Postfix 2.5.1_2,1 mail || server instead of the default Sendmail which ships with base distribution. || || My mail server is working fine with no issues except that I

remote logging with syslogd

2008-03-25 Thread Brad Pitney
Hi, somehow I have miss-understood how to get syslogd to recieve logs from another host, well my actual problem is syslog bitching likse this: Mar 25 01:00:00 kern.emerg syslogd: unknown priority name Mar 25 05:00:00 kern.emerg syslogd: unknown priority name Mar 25 09:00:01 kern.emerg

Re: syslog-ng not logging

2007-12-27 Thread Jeffrey Goldberg
no permission to log to files owned by root (syslogd). I solved that by logging into a different subdir owned by daemon. OK thanks. (I am the original poster, but I'd accidentally posted using my wife's role). Is there any reason not to simply do a cd /var/log chown -R daemon . also chown

Re: syslog-ng not logging

2007-12-27 Thread Peter Boosten
/etc/devfs.conf for console logging. Will log rotation preserve daemon ownership? Never used the *traditional* log style with syslog-ng, I stored everything per day/month/year/server. I ended up running syslog-ng as root, which is probably a bad idea as well, so I cannot give you any

Re: syslog-ng not logging

2007-12-27 Thread Jeffrey Goldberg
/devfs.conf More things to learn. I'm not really concerned about logging to console anyway, as the machine will run headless most of the time. Will log rotation preserve daemon ownership? Never used the *traditional* log style with syslog-ng, I stored everything per day/month/year/server

Re: syslog-ng not logging

2007-12-27 Thread Peter Boosten
Jeffrey Goldberg wrote: This is the first I've heard of mtree. I just looked mtree(8), but I take it that mtree is run periodically somehow to fix things. Do you know where? I can always keep my logs in some place other than /var/log if this is an issue. IIRC it's done at boot time.

syslog-ng not logging

2007-12-26 Thread Livia Markoczy
I've just installed syslog-ng from ports on 7.0B4. I put the following into /etc/rc.conf syslog_ng_enable=YES syslog_ng_config=-u daemon syslog_ng_pid=/var/run/syslog-ng.pid And my syslog-ng.conf file is very similar to the example one (plus some special destinations for things that come in

Re: syslog-ng not logging

2007-12-26 Thread Peter Boosten
anywhere, including to console, since the time I killed the system syslogd. Any suggestions of where I should look to debug this? Yup, file permissions. While your syslog-ng runs as daemon, it has no permission to log to files owned by root (syslogd). I solved that by logging into a different

Re: logging system load

2007-08-14 Thread James
Found another useful tool for logging system load. It's called Munin and it's in ports as sysutils/munin-node sysutils/munin-main. It's nifty -- uses rrdtool to graph various things. Some of the plugins are shabby and need some work to get running but the system load plugin works fine out

Re: logging system load

2007-08-14 Thread Hakan K
It is a very usuful tool .. Here is the website http://munin.projects.linpro.no/ Thanks Hakan http://jump2top.com On 8/14/07, James [EMAIL PROTECTED] wrote: Found another useful tool for logging system load. It's called Munin and it's in ports as sysutils/munin-node sysutils/munin

Re: logging system load

2007-08-02 Thread Zbigniew Szalbot
Hello, On Thu, 2 Aug 2007 13:44:33 +0300, Nikos Vassiliadis [EMAIL PROTECTED] wrote: On Wednesday 25 July 2007 20:50, Momchil Ivanov wrote: На Wednesday 25 July 2007 19:38:41 Zbigniew Szalbot написа: Dear all, Is there a tool similar to top which would measure system load and write it

Re: logging system load

2007-08-02 Thread Nikos Vassiliadis
On Wednesday 25 July 2007 20:50, Momchil Ivanov wrote: На Wednesday 25 July 2007 19:38:41 Zbigniew Szalbot написа: Dear all, Is there a tool similar to top which would measure system load and write it to a file that could later be analyzed? The time when my system is most loaded happens

Re: logging system load

2007-08-02 Thread Nikos Vassiliadis
On Thursday 02 August 2007 13:52, Zbigniew Szalbot wrote: Hello, On Thu, 2 Aug 2007 13:44:33 +0300, Nikos Vassiliadis [EMAIL PROTECTED] wrote: On Wednesday 25 July 2007 20:50, Momchil Ivanov wrote: На Wednesday 25 July 2007 19:38:41 Zbigniew Szalbot написа: Dear all, Is there a

Re: logging system load

2007-08-02 Thread Hugo Silva
Nikos Vassiliadis wrote: On Wednesday 25 July 2007 20:50, Momchil Ivanov wrote: На Wednesday 25 July 2007 19:38:41 Zbigniew Szalbot написа: Dear all, Is there a tool similar to top which would measure system load and write it to a file that could later be analyzed? The time when my

Re: logging system load

2007-08-02 Thread Ian Smith
On Thu, 2 Aug 2007 12:52:20 +0200 Zbigniew Szalbot [EMAIL PROTECTED] wrote: On Thu, 2 Aug 2007 13:44:33 +0300, Nikos Vassiliadis [EMAIL PROTECTED] wrote: On Wednesday 25 July 2007 20:50, Momchil Ivanov wrote: На Wednesday 25 July 2007 19:38:41 Zbigniew Szalbot написа: Dear

logging system load

2007-07-25 Thread Zbigniew Szalbot
Dear all, Is there a tool similar to top which would measure system load and write it to a file that could later be analyzed? The time when my system is most loaded happens between 3 and 5 a.m. so a trace of the system load would be a wonderful thing to have. I need it to tailor some of the jobs

Re: logging system load

2007-07-25 Thread Bill Moran
In response to Zbigniew Szalbot [EMAIL PROTECTED]: Dear all, Is there a tool similar to top which would measure system load and write it to a file that could later be analyzed? The time when my system is most loaded happens between 3 and 5 a.m. so a trace of the system load would be a

Re: logging system load

2007-07-25 Thread Momchil Ivanov
На Wednesday 25 July 2007 19:38:41 Zbigniew Szalbot написа: Dear all, Is there a tool similar to top which would measure system load and write it to a file that could later be analyzed? The time when my system is most loaded happens between 3 and 5 a.m. so a trace of the system load would be

Re: logging system load

2007-07-25 Thread James
out the wrong values from the commands it runs (top and such) and end up logging crazy values such as 0% idle when it's really 100% idle. Despite that problem I'd recommend it -- it's a useful tool IMHO. -- James. ___ freebsd-questions

Re: FreeBSD 6.2 default bind9, question about customize logging [re-post] (solved)

2007-07-11 Thread Patrick Dung
(base or ports) the behavior such as chroot, logging, etc. is controlled by the combination of /etc/rc.d/named and your named.conf options. Therefore this discussion applies equally well either way. I use FreeBSD 6.2 with the named come with the base. /etc/rc.conf named_enable=YES

Re: FreeBSD 6.2 default bind9, question about customize logging [re-post] (solved)

2007-07-11 Thread Edward Shabotinsky
). By default chroot is used. It's not a major issue, but it's probably worth pointing out that whatever code base you use (base or ports) the behavior such as chroot, logging, etc. is controlled by the combination of /etc/rc.d/named and your named.conf options. Therefore this discussion applies

Re: FreeBSD 6.2 default bind9, question about customize logging [re-post]

2007-07-10 Thread Edward Shabotinsky
this is what i have from 5.2 logging { channel namedlog { file /var/log/named.log; severity info; print-category yes; print-severity yes; print-time yes; }; category lame-servers

FreeBSD 6.2 default bind9, question about customize logging [re-post]

2007-07-08 Thread Patrick Dung
in named.conf (enabled local0.* in syslog.conf) , but still no luck. Any suggestions? logging { channel named-log { //syslog daemon; syslog local0; severity info; print-category yes; }; category default { named-log

FreeBSD 6.2 default bind9, question about customize logging

2007-07-07 Thread Patrick Dung
in named.conf (enabled local0.* in syslog.conf) , but still no luck. Any suggestions? logging { channel named-log { //syslog daemon; syslog local0; severity info; print-category yes; }; category default { named-log

Why is portupgrade not logging?

2007-05-12 Thread mal content
I am running the command like this: DATE_YEAR=`date +%Y` DATE_MONTH=`date +%m` DATE_DAY=`date +%d` LOG_BASE=$HOME/var/log/portupgrade LOG=${LOG_BASE}/${DATE_YEAR}/${DATE_MONTH}/${DATE_DAY}_%s:%s.log portupgrade \ -aRrv \ --batch \ -L ${LOG} No files are ever created in

Re: Why is portupgrade not logging?

2007-05-12 Thread mal content
${LOG} No files are ever created in ~/var/log/portupgrade/2007/05. Am I misunderstanding something about the -L switch? MC Cosmic ray. It's just started logging. Never mind... MC ___ freebsd-questions@freebsd.org mailing list http://lists.freebsd.org

Re: Syslog not logging remote host

2007-04-15 Thread web
At 08:48 PM 4/13/2007, you wrote: Janos Dohanics [EMAIL PROTECTED] wrote: I'm trying capture logs from m0n0wall, but the log file is empty. Here is my configuration: On the logging machine, in /etc/rc.conf: syslogd_flags=-a 10.61.70.1 In /etc/syslog.conf: +10.61.70.1

Re: Syslog not logging remote host

2007-04-15 Thread Bill Moran
[EMAIL PROTECTED] wrote: At 08:48 PM 4/13/2007, you wrote: Janos Dohanics [EMAIL PROTECTED] wrote: I'm trying capture logs from m0n0wall, but the log file is empty. Here is my configuration: On the logging machine, in /etc/rc.conf: syslogd_flags=-a 10.61.70.1

Re: Syslog not logging remote host

2007-04-14 Thread Doug Hardie
On Apr 13, 2007, at 22:44, [EMAIL PROTECTED] wrote: At 08:48 PM 4/13/2007, you wrote: Janos Dohanics [EMAIL PROTECTED] wrote: I'm trying capture logs from m0n0wall, but the log file is empty. Here is my configuration: On the logging machine, in /etc/rc.conf: syslogd_flags

Syslog not logging remote host

2007-04-13 Thread Janos Dohanics
I'm trying capture logs from m0n0wall, but the log file is empty. Here is my configuration: On the logging machine, in /etc/rc.conf: syslogd_flags=-a 10.61.70.1 In /etc/syslog.conf: +10.61.70.1 *.* /var/log/m0n0wall.log /var/log/m0n0wall.log

Re: Syslog not logging remote host

2007-04-13 Thread Dag-Erling Smørgrav
Janos Dohanics [EMAIL PROTECTED] writes: I'm trying capture logs from m0n0wall, but the log file is empty. [...] The m0n0wall is configured to send logs to 10.61.70.100, which is the logging machine. What am I missing? If 10.61.70.100 runs FreeBSD, syslogd_flags defaults to -s, which

Re: Syslog not logging remote host

2007-04-13 Thread web
At 03:45 PM 4/13/2007, you wrote: Janos Dohanics [EMAIL PROTECTED] writes: I'm trying capture logs from m0n0wall, but the log file is empty. [...] The m0n0wall is configured to send logs to 10.61.70.100, which is the logging machine. What am I missing? If 10.61.70.100 runs FreeBSD

Re: Syslog not logging remote host

2007-04-13 Thread Dag-Erling Smørgrav
[EMAIL PROTECTED] writes: Dag-Erling Smørgrav [EMAIL PROTECTED] writes: If 10.61.70.100 runs FreeBSD, syslogd_flags defaults to -s, which disables the listening socket. Yes, 10.61.70.100 is running 5.5-STABLE, and I have in /etc/rc.conf there: syslogd_flags=-a 10.61.70.1/32 Check with

Re: Syslog not logging remote host

2007-04-13 Thread Bill Moran
Janos Dohanics [EMAIL PROTECTED] wrote: I'm trying capture logs from m0n0wall, but the log file is empty. Here is my configuration: On the logging machine, in /etc/rc.conf: syslogd_flags=-a 10.61.70.1 In /etc/syslog.conf: +10.61.70.1

Re: Syslog not logging remote host

2007-04-13 Thread web
At 06:28 PM 4/13/2007, you wrote: [EMAIL PROTECTED] writes: Dag-Erling Smørgrav [EMAIL PROTECTED] writes: If 10.61.70.100 runs FreeBSD, syslogd_flags defaults to -s, which disables the listening socket. Yes, 10.61.70.100 is running 5.5-STABLE, and I have in /etc/rc.conf there:

Re: Syslog not logging remote host

2007-04-13 Thread web
At 08:48 PM 4/13/2007, you wrote: Janos Dohanics [EMAIL PROTECTED] wrote: I'm trying capture logs from m0n0wall, but the log file is empty. Here is my configuration: On the logging machine, in /etc/rc.conf: syslogd_flags=-a 10.61.70.1 In /etc/syslog.conf: +10.61.70.1

Re: remote logging with syslogd

2007-03-24 Thread Guido Demmenie
On Mar 23, 2007, at 2:54 PM, David Robillard wrote: Thnx for the tip. Found out that it was not the airport UDP port. It is some misconfiguration in my DNS, but still don't get why it doesn't work as expected. For some reason my DNS-name is snipped just before the TLD. Oh btw i changed

Re: remote logging with syslogd

2007-03-23 Thread David Robillard
Thnx for the tip. Found out that it was not the airport UDP port. It is some misconfiguration in my DNS, but still don't get why it doesn't work as expected. For some reason my DNS-name is snipped just before the TLD. Oh btw i changed some configs I prepended to /etc/syslog.conf the next and

Re: remote logging with syslogd

2007-03-22 Thread David Robillard
Hello, I'm trying to put up a remote logging server. I want to let my Airport Express send its logs to my FreeBSD server. So I said to my Airport to send its logs to the internal ip of my server, I suppose it works because that's what Apple hardware does. Now I did the following things on my

Re: remote logging with syslogd

2007-03-22 Thread Guido Demmenie
On Mar 22, 2007, at 3:45 PM, David Robillard wrote: Hello, I'm trying to put up a remote logging server. I want to let my Airport Express send its logs to my FreeBSD server. So I said to my Airport to send its logs to the internal ip of my server, I suppose it works because that's what Apple

Re: remote logging with syslogd

2007-03-22 Thread Guido Demmenie
On Mar 22, 2007, at 10:44 PM, Guido Demmenie wrote: On Mar 22, 2007, at 3:45 PM, David Robillard wrote: Hello, I'm trying to put up a remote logging server. I want to let my Airport Express send its logs to my FreeBSD server. So I said to my Airport to send its logs to the internal ip

remote logging with syslogd

2007-03-21 Thread Guido Demmenie
Hello, I'm trying to put up a remote logging server. I want to let my Airport Express send its logs to my FreeBSD server. So I said to my Airport to send its logs to the internal ip of my server, I suppose it works because that's what Apple hardware does. Now I did the following things

Re: remote logging with syslogd

2007-03-21 Thread Brian A. Seklecki
run syslogd in the foreground without daemonizing: $ sudo syslogd -dv [flags] If you don't see anything, tcpdump(8) and validate that UDP/514 packets are coming in. ~BAS On Wed, 2007-03-21 at 17:35 +0100, Guido Demmenie wrote: Hello, I'm trying to put up a remote logging server. I want

isc-dhcpd logging breaks when syslog-ng HUP'd

2007-03-06 Thread Christopher Cowart
Hello, I have 2 servers running isc-dhcp3-server and syslog-ng. I have configured dhcpd to run in a chroot. The following (reproducible) sequence of events cause dhcpd logging to break: 1) Start syslog-ng 2) Start isc-dhcpd (At this point, logging is working fine) 3) `pkill -HUP syslog-ng

Are there any log files which shows who is logging to a FreeBSD box and when?

2007-01-12 Thread VeeJay
Hi Can anyone tell? Are there any log files which shows who is logging to a FreeBSD box and when? If yes, where can one find them? -- Thanks! BR / vj ___ freebsd-questions@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd

Re: Are there any log files which shows who is logging to a FreeBSD box and when?

2007-01-12 Thread Jeff Royle
VeeJay wrote: Hi Can anyone tell? Are there any log files which shows who is logging to a FreeBSD box and when? If yes, where can one find them? The file /var/log/auth.log should contain all the information you are looking for. man syslog.conf and man syslogd for more information

SV: Are there any log files which shows who is logging to a FreeBSD boxand when?

2007-01-12 Thread Tim Nilimaa
Hi, cat /var/log/auth.log or tail -f /var/log/auth.log Kind regards Tim Från: [EMAIL PROTECTED] genom VeeJay Skickat: fr 2007-01-12 20:10 Till: [EMAIL PROTECTED]; FreeBSD-Questions Ämne: Are there any log files which shows who is logging to a FreeBSD

Re: Are there any log files which shows who is logging to a FreeBSD box and when?

2007-01-12 Thread Andras GELANYI
hi, have a look at /var/log/auth.log (and also on utmp) VeeJay wrote: Hi Can anyone tell? Are there any log files which shows who is logging to a FreeBSD box and when? If yes, where can one find them? ___ freebsd-questions@freebsd.org mailing

Re: Are there any log files which shows who is logging to a FreeBSD box and when?

2007-01-12 Thread Chuck Swiger
On Jan 12, 2007, at 11:10 AM, VeeJay wrote: Can anyone tell? Are there any log files which shows who is logging to a FreeBSD box and when? If yes, where can one find them? Yes, see the last command or man wtmp... -- -Chuck ___ freebsd-questions

Re: Are there any log files which shows who is logging to a FreeBSD box and when?

2007-01-12 Thread Greg Albrecht
is logging to a FreeBSD box and when? If yes, where can one find them? -- Thanks! BR / vj ___ freebsd-questions@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-questions To unsubscribe, send any mail to [EMAIL PROTECTED] -- Greg

Re: Clutz-Proof Logging

2007-01-05 Thread Christian Walther
I'll try to follow up to two posts instead of replying twice, so I hope nobody gets confused here. :-) On 04/01/07, Vizion [EMAIL PROTECTED] wrote: - Original Message From: Bill Moran [EMAIL PROTECTED] Many shells keep a history as a matter of normal operation. You might find that

Re: Clutz-Proof Logging

2007-01-05 Thread Tom Judge
Stan Halprin wrote: 747478Hi; I know I'm a clutz but I'm sick and tired of doing some stupid thing that crashes my server, then trying to figure out what I did. Is there something out there that could log everything I did so that I could review it each time I shoot myself in the foot? TIA

Clutz-Proof Logging

2007-01-04 Thread Stan Halprin
- Original Message From: Bill Moran [EMAIL PROTECTED] Many shells keep a history as a matter of normal operation. You might find that enough for you. Personally, I use bash, and the command history brings the last 100 commands or so. No, this isn't sufficient. The problems are: 1)

RE: Clutz-Proof Logging

2007-01-04 Thread Vizion
- Original Message From: Bill Moran [EMAIL PROTECTED] Many shells keep a history as a matter of normal operation. You might find that enough for you. Personally, I use bash, and the command history brings the last 100 commands or so. No, this isn't sufficient. The problems are: 1)

Re: Clutz-Proof Logging

2007-01-04 Thread Stan Halprin
8376- Original Message From: Vizion [EMAIL PROTECTED] I am not certain if you are using X or console. console As far as file editing is concerned if the file is important to you then you might want to try saving a snapshot when you open the file and use a small script to both save

Re: Clutz-Proof Logging

2007-01-04 Thread Vizion
-Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Stan Halprin Sent: Thursday, January 04, 2007 8:46 AM To: freebsd-questions@freebsd.org Subject: Re: Clutz-Proof Logging 8376- Original Message From: Vizion [EMAIL PROTECTED] I am

Re: Clutz-Proof Logging

2007-01-04 Thread Richard Lynch
On Thu, January 4, 2007 10:46 am, Stan Halprin wrote: What is a snapshot? I could just make a backup copy of it, which is what I was thinking of doing, and revert if necessary. Of course, that supposes I remember to do that :/ I was hoping for some program smarter than me. Jumping into the

Re: Clutz-Proof Logging

2007-01-04 Thread Stan Halprin
- Original Message From: Richard Lynch [EMAIL PROTECTED] Jumping into the middle of a thread, possibly to disastrous effect... Perhaps you should be using subversion or CVS to keep version control of your document? Far as I can tell from what's being said. Hmm. Maybe so. Good

Clutz-Proof Logging

2007-01-02 Thread Stan Halprin
747478Hi; I know I'm a clutz but I'm sick and tired of doing some stupid thing that crashes my server, then trying to figure out what I did. Is there something out there that could log everything I did so that I could review it each time I shoot myself in the foot? TIA Stan

Re: Clutz-Proof Logging

2007-01-02 Thread Bill Moran
Stan Halprin [EMAIL PROTECTED] wrote: 747478Hi; I know I'm a clutz but I'm sick and tired of doing some stupid thing that crashes my server, then trying to figure out what I did. Is there something out there that could log everything I did so that I could review it each time I shoot myself

Re: forwarding as a gateway, logging certain traffic

2006-09-13 Thread Norberto Meijome
On Tue, 12 Sep 2006 15:51:08 -0400 Bart Silverstrim [EMAIL PROTECTED] wrote: Something inside our network is infected with a spam-mailing trojan. We now have our PIX firewall set to block all outgoing traffic to port 25 unless it is from our mail server. you should also accept only

forwarding as a gateway, logging certain traffic

2006-09-12 Thread Bart Silverstrim
This will probably be kind of wordy, but I could use some advice on how to track it. I have a freebsd system acting as a gateway (it's using IP forwarding) so it can act as a web proxy server and filter for the users. It is also filtering incoming email to act as a mail filter between

Re: forwarding as a gateway, logging certain traffic

2006-09-12 Thread Bill Moran
configs you have to have in place for logging to work, though. -- Bill Moran Collaborative Fusion Inc. IMPORTANT: This message contains confidential information and is intended only for the individual named. If the reader

Re: forwarding as a gateway, logging certain traffic

2006-09-12 Thread Chuck Swiger
the top of my head ... ipfw add 25 log tcp from any to any 25 should work. There are certain kernel configs you have to have in place for logging to work, though. Better to use something like: ipfw add 1 log tcp from any to me 25 setup If Bart would like to use tcpdump for the same purpose

Re: forwarding as a gateway, logging certain traffic

2006-09-12 Thread Bill Moran
to sniffing with tcpdump or wireshark or ethereal? Off the top of my head ... ipfw add 25 log tcp from any to any 25 should work. There are certain kernel configs you have to have in place for logging to work, though. Better to use something like: ipfw add 1 log tcp from any to me

Re: forwarding as a gateway, logging certain traffic

2006-09-12 Thread Bart Silverstrim
to sniffing with tcpdump or wireshark or ethereal? Off the top of my head ... ipfw add 25 log tcp from any to any 25 should work. There are certain kernel configs you have to have in place for logging to work, though. Better to use something like: ipfw add 1 log tcp from any to me 25 setup

Re: forwarding as a gateway, logging certain traffic

2006-09-12 Thread Chuck Swiger
)' Maybe my ipfw is old; it kept telling me that log is an invalid action. However, I think I may be able to get the tcpdump idea to work. There's a kernel option you need to enable for IPFW to do logging. If you're kldload'ing the ipfw module, it probably wasn't compiled with IPFW_LOGGING

Re: forwarding as a gateway, logging certain traffic

2006-09-12 Thread Bart Silverstrim
-nt 'port 25 and (tcp[tcpflags] tcp-syn != 0)' Maybe my ipfw is old; it kept telling me that log is an invalid action. However, I think I may be able to get the tcpdump idea to work. There's a kernel option you need to enable for IPFW to do logging. If you're kldload'ing the ipfw

RE: forwarding as a gateway, logging certain traffic

2006-09-12 Thread Steve Bertrand
There's a kernel option you need to enable for IPFW to do logging. If you're kldload'ing the ipfw module, it probably wasn't compiled with IPFW_LOGGING or whatever the exact name is. I had set the verbosity (I think that was the parameter) from googling around earlier

Racoon / IPSec-Tools, disable debug logging?

2006-08-26 Thread Chris Knipe
Hi, I've compiled racoon (IPSec-Tools / FreeBSD Ports) various times with --disable-debug Debug messages keeps ending up in syslog :( How can I disable the debug output??? Regards, Chris. ___ freebsd-questions@freebsd.org mailing list

syslogd remote logging

2006-08-21 Thread Josh Paetzel
I am trying to get syslogd configured to do remote logging to another box. In my syslog.conf on the local machine I have: local0.* @xx.xx.xx.xx In syslog.conf on the remote machine I have: local0.* /some/file.log and I have added the syslogd_flags=-a xx.xx.xx.xx/xx to rc.conf on the remote

Re: syslogd remote logging

2006-08-21 Thread Paul Schmehl
--On Monday, August 21, 2006 14:40:37 -0500 Josh Paetzel [EMAIL PROTECTED] wrote: I am trying to get syslogd configured to do remote logging to another box. In my syslog.conf on the local machine I have: local0.* @xx.xx.xx.xx In syslog.conf on the remote machine I have: local0.* /some

<    1   2   3   4   5   >