Sponsored Content
Top Forums UNIX for Advanced & Expert Users Disable connection logging for a specfic service (/var/log/secure) Post 302477302 by droid on Saturday 4th of December 2010 06:24:02 AM
Old 12-04-2010
Hi,
it depends on the operating system you are using and which program does the logging.
 

9 More Discussions You Might Find Interesting

1. UNIX for Advanced & Expert Users

difference between logging into unix through f-secure ssh client and telnet

hi, what is the difference between logging into unix through f-secure ssh client and telnet is there any more security check is involved can any one explain thanks in advance (1 Reply)
Discussion started by: trichyselva
1 Replies

2. SCO

Disable the SNMP Service

Dear All, Kindly guide how to Disable the SNMP Service on sco unix release 5.0 Regards (2 Replies)
Discussion started by: sak900354
2 Replies

3. Red Hat

/var/log/messages and secure not updating

Hello all, I recently deleted some lines from the messages and secure files, in /var/log and now they are not keeping a log anymore. The last update shows the date of when I deleted the lines. I had to delete some failed login attempts to stop denyhosts from blocking the ips (probably not the... (3 Replies)
Discussion started by: z1dane
3 Replies

4. Shell Programming and Scripting

Is my TLSFTP connection secure?

What is difference in the below Two commands? 1) tlsftp -v -d -i -a -z verify=0 opts=17 $SERVERNAME << ! 2) tlsftp -i -v -n ${ SERVERNAME } << ! Presently I am using the second command for get the files from Mainframe system to Unix system. But it is not secure. Now i want to... (0 Replies)
Discussion started by: gbellamk
0 Replies

5. Linux

Disable connection logging for a specfic service (/var/log/secure)

Hello, is there a way to disable connection logging for a specific service? Or eventually to disable /var/log/secure in general? Closed. Double post (0 Replies)
Discussion started by: TehOne
0 Replies

6. Cybersecurity

/var/log/secure* mysteriously empty!

Hello everyone. I'm a newbie and this is my first post, and I'm hoping to get some help understanding what happened on my server. I did as much research as I could, but now I turn to the forums for help :) I've set up a VPS server and I "thought" I had good enough security on it, but all of a... (2 Replies)
Discussion started by: antondev
2 Replies

7. Solaris

secure connection between two servers ?

hello all, i have a question if i have two servers each one run an application i want to make a tunnel channel between the two servers the two application each one has a specific port . for example server A has port 2001 and server B has port 2002 server A talk to server A using any... (1 Reply)
Discussion started by: maxim42
1 Replies

8. Red Hat

Disable copying secure key's to remote system

Hi, We all know as we can connect remote system through ssh without entering username and password by copy the public key to remote host using ssh-copy-id. But my query is to i want to restrict the user as do not implement this feature.Whenever he is trying to login, he has to enter his/her... (1 Reply)
Discussion started by: mastansaheb
1 Replies

9. Shell Programming and Scripting

Transfer the logs being thrown into /var/log/messages into another file example /var/log/volumelog

I have been searching and reading about syslog. I would like to know how to Transfer the logs being thrown into /var/log/messages into another file example /var/log/volumelog. tail -f /var/log/messages dblogger: msg_to_dbrow: no logtype using missing dblogger: msg_to_dbrow_str: val ==... (2 Replies)
Discussion started by: kenshinhimura
2 Replies
AUDISP-REMOTE:(8)					  System Administration Utilities					 AUDISP-REMOTE:(8)

NAME
audisp-remote - plugin for remote logging SYNOPSIS
audisp-remote DESCRIPTION
audisp-remote is a plugin for the audit event dispatcher daemon, audispd, that preforms remote logging to an aggregate logging server. TIPS
If you are aggregating multiple machines, you should enable node information in the audit event stream. You can do this in one of two places. If you want computer node names written to disk as well as sent in the realtime event stream, edit the name_format option in /etc/audit/auditd.conf. If you only want the node names in the realtime event stream, then edit the name_format option in /etc/audisp/aud- ispd.conf. Do not enable both as it will put 2 node fields in the event stream. SIGNALS
SIGUSR1 Causes the audisp-remote program to write the value of some of its internal flags to syslog. The suspend flag tells whether or not logging has been suspended. The transport_ok flag tells whether or not the connection to the remote server is healthy. The queue_size tells how many records are enqueued to be sent to the remote server. SIGUSR2 Causes the audisp-remote program to resume logging if it were suspended due to an error. FILES
/etc/audisp/plugins.d/au-remote.conf, /etc/audit/auditd.conf, /etc/audisp/audispd.conf, /etc/audisp/audisp-remote.conf SEE ALSO
audispd(8), auditd.conf(8), audispd.conf(8), audisp-remote.conf(5). AUTHOR
Steve Grubb Red Hat Apr 2011 AUDISP-REMOTE:(8)
All times are GMT -4. The time now is 09:40 AM.
Unix & Linux Forums Content Copyright 1993-2022. All Rights Reserved.
Privacy Policy