[Logcheck-commits] r1310 - in logcheck/trunk: debian
rulefiles/linux/ignore.d.server
madduck at users.alioth.debian.org
madduck at users.alioth.debian.org
Mon Nov 13 16:09:23 CET 2006
Author: madduck
Date: 2006-11-13 16:09:23 +0100 (Mon, 13 Nov 2006)
New Revision: 1310
Modified:
logcheck/trunk/debian/changelog
logcheck/trunk/rulefiles/linux/ignore.d.server/ssh
Log:
* ignore.d.server/ssh: ignore listening notices for all ports, not just 22.
Modified: logcheck/trunk/debian/changelog
===================================================================
--- logcheck/trunk/debian/changelog 2006-11-13 15:08:18 UTC (rev 1309)
+++ logcheck/trunk/debian/changelog 2006-11-13 15:09:23 UTC (rev 1310)
@@ -21,8 +21,9 @@
* ignore.d.server/smartd, violations.d/smartd: ignore messages about
temperature changes, but escalate those reaching limits.
* ignore.d.workstation/kernel: ignore more messages related to USB hotplug.
+ * ignore.d.server/ssh: ignore listening notices for all ports, not just 22.
- -- martin f. krafft <madduck at debian.org> Mon, 13 Nov 2006 16:07:52 +0100
+ -- martin f. krafft <madduck at debian.org> Mon, 13 Nov 2006 16:08:59 +0100
logcheck (1.2.50) unstable; urgency=low
Modified: logcheck/trunk/rulefiles/linux/ignore.d.server/ssh
===================================================================
--- logcheck/trunk/rulefiles/linux/ignore.d.server/ssh 2006-11-13 15:08:18 UTC (rev 1309)
+++ logcheck/trunk/rulefiles/linux/ignore.d.server/ssh 2006-11-13 15:09:23 UTC (rev 1310)
@@ -1,7 +1,7 @@
^\w{3} [ :0-9]{11} [._[:alnum:]-]+ sshd\[[0-9]+\]: Accepted (gssapi(-with-mic)?|rsa|dsa|password|publickey|keyboard-interactive/pam) for [^[:space:]]+ from [^[:space:]]+ port [0-9]+( (ssh|ssh2))?$
^\w{3} [ :0-9]{11} [._[:alnum:]-]+ sshd\[[0-9]+\]: Postponed keyboard-interactive(/pam)? for [^[:space:]]+ from [^[:space:]]+ port [0-9]+( (ssh|ssh2))?$
^\w{3} [ :0-9]{11} [._[:alnum:]-]+ sshd\[[0-9]+\]: PAM pam_putenv: delete non-existent entry; [[:alnum:]]+$
-^\w{3} [ :0-9]{11} [._[:alnum:]-]+ sshd\[[0-9]+\]: Server listening on [:[:xdigit:].]+ port 22\.$
+^\w{3} [ :0-9]{11} [._[:alnum:]-]+ sshd\[[0-9]+\]: Server listening on [:[:xdigit:].]+ port [[:digit:]]+\.$
^\w{3} [ :0-9]{11} [._[:alnum:]-]+ sshd\[[0-9]+\]: subsystem request for sftp$
^\w{3} [ :0-9]{11} [._[:alnum:]-]+ sshd\[[0-9]+\]: Received disconnect from [:[:xdigit:].]+: [0-9]+: Client disconnect$
^\w{3} [ :0-9]{11} [._[:alnum:]-]+ sshd\[[0-9]+\]: Received disconnect from [:[:xdigit:].]+: [0-9]+: Disconnect requested by Windows SSH Client\.$
More information about the Logcheck-commits
mailing list