12-21-2011
As the OP stated:
Quote:
Originally Posted by
Abhinav Jaiswal
There were a few files deleted from a server by user xyz.
...
need to know the ip address of the terminal from which that user logged in to delete those files.
He knows the user and wants to know the IP address.
Last edited by hergp; 12-21-2011 at 05:11 PM..
9 More Discussions You Might Find Interesting
1. UNIX for Dummies Questions & Answers
Hi..
I am new to unix. And I am trying to learn more about admin part of it. We have come across a situation where one of the directory gets deleted everyday at 4:00 pm by some process. We are unable to find out what deletes that directory, seems like a automated job.. but there is nothing... (9 Replies)
Discussion started by: vipas
9 Replies
2. UNIX for Dummies Questions & Answers
Hi,
I need to compare todays file to yesterdays file to find deletes.
I cannot use comm -23 file.old file.new.
Because each record may have a small change in it but is not really a delete.
I have two delimited files. the first field in each file is static. All other fields may change. I... (2 Replies)
Discussion started by: eja
2 Replies
3. UNIX for Dummies Questions & Answers
Is there a command or shell script which can be used for Finding all files created by a specified userid in a directory and its subdirectories.
Say, I want to find all such files in directory /abc as well as in all the subdirectories such as /abc/xyz or /abc/xyz/pqr aqnd so on which was created... (5 Replies)
Discussion started by: abhilashnair
5 Replies
4. Cybersecurity
Hi,
I am trying to write a script which would figure out who has run which command and their IP. As i dont have any clue as to which commands would do this job, i request some gurus to help me on this.
Thanks
Vishwas (2 Replies)
Discussion started by: loggedout
2 Replies
5. UNIX for Dummies Questions & Answers
:) Firstly Hi all!!, im NEW!! and on here hoping that someone might be able to offer me some help... i have a server that keeps crashing every few days with the error message:
PANIC KERNAL-MODE ADDRESS FAULT ON USER ADDRESS 0X14
KERNAL PAGE FAULT FROM (CS:EIP)=(100:EF71B5BD)
EAX=EF822000... (10 Replies)
Discussion started by: Twix
10 Replies
6. AIX
Recently we've had a couple user accounts mysteriously disappear. Is there any way to track these accounts and determine who/how they were deleted? (2 Replies)
Discussion started by: Sk0glund
2 Replies
7. Shell Programming and Scripting
Good morning everybody,
I'm using Minix and I want to find the user with less number of files in the system
I have tried this solution:
#! /bin/sh
indice=0
listaCut=$(cut -f 3 -d : /etc/passwd)
for USER in $listaCut; do
cont=0
listaFind=$(find / -user "${USER}" -type -f)
... (4 Replies)
Discussion started by: Guccio
4 Replies
8. Shell Programming and Scripting
I have been searching, and cannot find an answer for this. I am trying to find all files for a user, lets call him (test001), and I want to exclude a specific directory.
Here is the command I run, it finds all files:
find / -user test001
I get this result:
> find / -user test001 ... (4 Replies)
Discussion started by: steve2x4
4 Replies
9. UNIX for Dummies Questions & Answers
Hello
I have user directories that contain /temp directory.
Example folders:
/user1/temp/
/user2/temp/
/user3/temp/
How can i loop over all user directories and find all files only in their /temp folder?
Thanks a lot for help! (3 Replies)
Discussion started by: flavius42
3 Replies
rwho(1) General Commands Manual rwho(1)
NAME
rwho - show who is logged in on local machines
SYNOPSIS
DESCRIPTION
produces output similar to the output of the HP-UX command for all machines on the local network that are running the daemon (see who(1)
and rwhod(1M)). If has not received a report from a machine for 11 minutes, assumes the machine is down and does not report users last
known to be logged into that machine.
output line has fields for the name of the user, the name of the machine, the user's terminal line, the time the user logged in, and the
amount of time the user has been idle. Idle time is shown as:
If a user has not typed to the system for a minute or more, reports this as idle time. If a user has not typed to the system for an hour
or more, the user is omitted from output unless the flag is given.
An example output line from would look similar to:
This output line could be interpreted as is logged into and his terminal line is has been logged on since September 12 at 13:28 (1:28
p.m.). has not typed anything into for 11 minutes.
WARNINGS
output becomes unwieldy when the number of users for each machine on the local network running becomes large. One line of output occurs
for each user on each machine on the local network that is running
AUTHOR
was developed by the University of California, Berkeley.
FILES
Information about other machines.
SEE ALSO
ruptime(1), rusers(1), rwhod(1M).
rwho(1)