Changeset 1584 for trunk/server


Ignore:
Timestamp:
Jul 5, 2010, 2:52:23 PM (14 years ago)
Author:
geofft
Message:
d_zroot: Also punt the logic for counting failed root logins

This updates r1583, whose intent was to drop all such messages. Since we don't
permit password logins for root any more than we do for other accounts, there's
no need to zephyr about either.

File:
1 edited

Legend:

Unmodified
Added
Removed
  • trunk/server/fedora/config/etc/syslog-ng/d_zroot.pl

    r1583 r1584  
    2929
    3030my %sshkeys;
    31 
    32 my %ips;
    3331
    3432sub buildKeyMap($) {
     
    9088                sendmsg($message." (UNKNOWN KEY)");
    9189            }
    92         } elsif ($message =~ m|^Failed keyboard-interactive/pam for root from ([^ ]*)|) {
    93             my $count = ++$ips{$1};
    94             if ($count % 10 == 0 or $1 =~ /^18\./) {
    95                 sendmsg($message." (repeated $count times)", "scripts-spew");
    96             }
    9790        } elsif ($message =~ m|^Out of memory:|) {
    9891            sendmsg($message);
     
    107100        } elsif ($message =~ m|^Received disconnect from|) {
    108101        } elsif ($message =~ m|^Postponed keyboard-interactive|) {
    109         } elsif ($message =~ m|^Failed keyboard-interactive|) {
     102        } elsif ($message =~ m|^Failed keyboard-interactive/pam|) {
    110103        } elsif ($message =~ m|^fatal: Read from socket failed: Connection reset by peer$|) {
    111104        } elsif ($message =~ m|^reverse mapping checking getaddrinfo|) {
Note: See TracChangeset for help on using the changeset viewer.