Visit Our UNIX and Linux User Community


terminal capture


 
Thread Tools Search this Thread
Special Forums Cybersecurity terminal capture
# 1  
Old 07-23-2001
Data terminal capture

Hi Unix Experts,

Since I am in childhood stage of Unix, I need to know a solution for the following:

When I logon from a Remote terminal ( say /dev/pts/0) ,
I should be able to view the work done by the Remote user on the Unix machine when I log on as a root.

eg : if the remote user types
echo $TERM

in my Unix Server,
I should be able to view the same and the result.

I tried cat /dev/pts/0 > /dev/tty1 (Unix Terminal)

but the remote user is getting blocked. I also tried with dd and other commands but still I could not get the solution....

I would appreciate if anyone can help me in this regard.
# 2  
Old 08-20-2001
You could write a C program to open the device file and read this file, as root.
# 3  
Old 08-21-2001

Look into telnetsnoopd... It comes by default with several Linux distributions...

You can set it up several different ways, but the end result is that you watch what a user does on their terminal.
# 4  
Old 08-22-2001
If you've ever heard of a small program called VNC, you may want to check that out. It shows an exact copy of the screen on a remote terminal and can even allow you keyboard and mouse control. I personally never got it to work on my Linux box, but I've used it extensively on the Windows side. But it came with my Mandrake distro, so I know it has to work. Good luck.

Here's their website if you want to see more:

www.uk.research.att.com/vnc

They have downloads for Linux/SPARC/Windows/Macintosh and others including the source code for all.
# 5  
Old 09-15-2001
hi try this

You might need to enter these in ur shell startup scripts like .login or .profile or .bash_profile depending upon ur login shell.


% csh -i |& tee /tmp/demo
or
$ csh -i 2>&1 | tee /tmp/demo

In the other shells that are
going type:


% tail -f /tmp/demo

courtesy: ugu.com
# 6  
Old 09-27-2001
More and more....

I got yer sreen capture right here.....


It's late, I'm tired, anyway, you need to check out ttywatcher, this is a nice little screen watcher util for unix, I forget exactly how it works, but it is cool. You'll have to compile it,a nd it may need some libs, I've put it on Solaris and IRIX, it worked great, it was just a littel unstable at first, had to tweak it some...

The next thing is, a favorite of many sneaky people, "xwd", this nice little thing comes with most all unix systems and also works with "xwud". What it is: X-windows Dump, it basically takes an Xwindows session and dumps it (or a particular window) to a file, you can then read that file with "xwud", or X-windows UnDump.

2600 did an article on this sometime back as an eavesdropping method, it's been around for quite a while, and it does work, but you need to be on the same host to dump the user's session. And it is a kind of snapshot, not real-time.

I suppose, if one wanted to go to the trouble of seeing what a user is seeing without having a loging to the box they are on, you could hook up a sniffer to the network, I'm implying here that YOU are an admin and have this sort of authority at your site, other wise, DON'T EVEN THINK OF DOING THIS, and inline it to a reconstruction prog of some sort, take a look at the bpf stuff, I think I read of something similar to this already being out.


In all seriousness, these are ideas really for eavesdropping on your users, many a more seasoned SA/NA than I have stated that you should be paranoid about your security, but not to the point of being a hinderance to the usage of the system as it was intended. I can't come up with a good reason to implement these things where I work, I do this at home for kicks and to see how it works, but I really don't need to look over my users shoulders, they're already convinced I'm omniscient anyway....


Hope this helps, I apolagize for the soapboxin',


loadc
# 7  
Old 09-28-2001
MySQL

Yeah loadc, ur right, Ill definitely make a note of this.

Thanks & Regards

Previous Thread | Next Thread
Test Your Knowledge in Computers #650
Difficulty: Medium
Linux distributions have not define their own applications menu for Window Maker.
True or False?

10 More Discussions You Might Find Interesting

1. Shell Programming and Scripting

Print Terminal Output Exactly how it Appears in the Terminal to a New Text File

Hello All, I have a text file containing output from a command that contains lots of escape/control characters that when viewed using vi or view, looks like jibberish. But when viewed using the cat command the output is formatted properly. Is there any way to take the output from the cat... (7 Replies)
Discussion started by: mrm5102
7 Replies

2. Shell Programming and Scripting

Cannot get terminal application to launch with a graphical launcher when successful in terminal

I have been having an extremely annoying problem. For the record, I am relatively new at this. I've only been working with unix-based OS's for roughly two years, mostly Xubuntu and some Kali. I am pretty familiar with the BASH language, as that's the default shell for debian. Now, I've made this... (16 Replies)
Discussion started by: Huitzilopochtli
16 Replies

3. UNIX for Dummies Questions & Answers

A terminal controlling a terminal...

Hi all... Consider me a dummy here... I do not want any code or for anyone to show me how to do it at this time, but here is the question:- I have had this brainstorm to be able to control the AudioScope.sh program in the "Shell Scripting And Programming" forum... Is it possible, by... (4 Replies)
Discussion started by: wisecracker
4 Replies

4. Shell Programming and Scripting

How to Capture a Unix Terminal Session?

Hi All, I want to capture all the operations performed in the terminal. So to achieve this I used “script” command. This works as I expected. But this command captures all the standard output which is redirected to terminal. For example if i “tail” a file, even the tail output is getting... (2 Replies)
Discussion started by: kalpeer
2 Replies

5. UNIX for Dummies Questions & Answers

Does DOS has a terminal or pseudo terminal?

I am wondering if the DOS console works like the unix terminal? (1 Reply)
Discussion started by: vistastar
1 Replies

6. UNIX for Dummies Questions & Answers

Gnuplot wxt terminal vs x11 terminal

Hi, I installed ubuntu recently on my pc. And I installed gnuplot as well. When I first started working with gnuplot it was working . I did a plot and when I wanted to fit my data something happened and not the default terminal of gnuplot is xwt! I changed it to: set terminal x11, but it... (0 Replies)
Discussion started by: cosmologist
0 Replies

7. UNIX for Advanced & Expert Users

Pseudo-terminal will not be allocated because stdin is not a terminal.

I am trying to automate a SSH login using Keys using the following command ssh -i id_rsa usernamw@ipaddr. I am successful in doing this and i am getting the Warning Screen and I logon successfully. but when I am executing the command tail -1cf put.dat | ssh -i id_rsa username@ipaddr > get.dat ... (1 Reply)
Discussion started by: Shivdatta
1 Replies

8. AIX

Capture IP Adress

hello I need for a script to capture the ip address from the connected user. I have 5 logical partitions. With "who", i have the ip adress, but only for 2 servers. Do you know another command to know the ip address of connected clients ? thank you (14 Replies)
Discussion started by: pascalbout
14 Replies

9. UNIX for Advanced & Expert Users

connecting to unix through hyper terminal - as a dumb terminal

I just changed from windows NT to XP and I am no longer able to connect to my unix system. I used to use hyper terminal -- which acts as dumb terminal to my main frame unix system. I think one of the options used to be "direct to comX". This option isn't listed now. I use a serial port and the... (2 Replies)
Discussion started by: michelle
2 Replies

10. UNIX for Dummies Questions & Answers

terminal capture

I have to capture a remote terminal from the Unix machine I tried with cat /dev/pts/0 (remote terminal) > /dev/tty1 (Unix terminal) but its is blocking the remote terminal. (2 Replies)
Discussion started by: krishonv_2
2 Replies

Featured Tech Videos