Re: [Rkhunter-users] File properties checks all fail on Red Hat 2.1AS

2010-02-24 Thread John Horne
On Wed, 2010-02-24 at 11:58 -0600, Sean Carolan wrote: > Here's some more detail showing what the code does. Any ideas? > > bash -x rkhunter --enable 'properties' > > + PKGMGR_VERIFY_RESULT= > ++ /bin/rpm -q --queryformat > '[%{FILEMODES:octal}:%{FILEUSERNAME}:%{FILEGROUPNAME}:%{FILESIZES}:%{FIL

Re: [Rkhunter-users] File properties checks all fail on Red Hat 2.1AS

2010-02-24 Thread Sean Carolan
Here's some more detail showing what the code does. Any ideas? bash -x rkhunter --enable 'properties' + PKGMGR_VERIFY_RESULT= ++ /bin/rpm -q --queryformat '[%{FILEMODES:octal}:%{FILEUSERNAME}:%{FILEGROUPNAME}:%{FILESIZES}:%{FILEMTIMES}:%{FILEMD5S}:%{FILENAMES}\n]' '' ++ grep ':/bin/mail$' + RPM_

Re: [Rkhunter-users] File properties checks all fail on Red Hat 2.1AS

2010-02-24 Thread Mike McCarty
Sean Carolan wrote: > I've read the FAQ and searched quite a bit through the mailing list > and Google archives, but not found anything related to my problem. > > On some of our older Red Hat 2.1AS hosts, the 'properties' check seems > to fail due to not finding an inode value: > > [10:52:59] Inf

[Rkhunter-users] File properties checks all fail on Red Hat 2.1AS

2010-02-24 Thread Sean Carolan
I've read the FAQ and searched quite a bit through the mailing list and Google archives, but not found anything related to my problem. On some of our older Red Hat 2.1AS hosts, the 'properties' check seems to fail due to not finding an inode value: [10:52:59] Info: The command 'rpm -qf --queryfor