[Logcheck-commits] r1310 - in logcheck/trunk: debian rulefiles/linux/ignore.d.server

madduck at users.alioth.debian.org madduck at users.alioth.debian.org
Mon Nov 13 16:09:23 CET 2006


Author: madduck
Date: 2006-11-13 16:09:23 +0100 (Mon, 13 Nov 2006)
New Revision: 1310

Modified:
   logcheck/trunk/debian/changelog
   logcheck/trunk/rulefiles/linux/ignore.d.server/ssh
Log:
* ignore.d.server/ssh: ignore listening notices for all ports, not just 22.

Modified: logcheck/trunk/debian/changelog
===================================================================
--- logcheck/trunk/debian/changelog	2006-11-13 15:08:18 UTC (rev 1309)
+++ logcheck/trunk/debian/changelog	2006-11-13 15:09:23 UTC (rev 1310)
@@ -21,8 +21,9 @@
   * ignore.d.server/smartd, violations.d/smartd: ignore messages about
     temperature changes, but escalate those reaching limits.
   * ignore.d.workstation/kernel: ignore more messages related to USB hotplug.
+  * ignore.d.server/ssh: ignore listening notices for all ports, not just 22.
 
- -- martin f. krafft <madduck at debian.org>  Mon, 13 Nov 2006 16:07:52 +0100
+ -- martin f. krafft <madduck at debian.org>  Mon, 13 Nov 2006 16:08:59 +0100
 
 logcheck (1.2.50) unstable; urgency=low
 

Modified: logcheck/trunk/rulefiles/linux/ignore.d.server/ssh
===================================================================
--- logcheck/trunk/rulefiles/linux/ignore.d.server/ssh	2006-11-13 15:08:18 UTC (rev 1309)
+++ logcheck/trunk/rulefiles/linux/ignore.d.server/ssh	2006-11-13 15:09:23 UTC (rev 1310)
@@ -1,7 +1,7 @@
 ^\w{3} [ :0-9]{11} [._[:alnum:]-]+ sshd\[[0-9]+\]: Accepted (gssapi(-with-mic)?|rsa|dsa|password|publickey|keyboard-interactive/pam) for [^[:space:]]+ from [^[:space:]]+ port [0-9]+( (ssh|ssh2))?$
 ^\w{3} [ :0-9]{11} [._[:alnum:]-]+ sshd\[[0-9]+\]: Postponed keyboard-interactive(/pam)? for [^[:space:]]+ from [^[:space:]]+ port [0-9]+( (ssh|ssh2))?$
 ^\w{3} [ :0-9]{11} [._[:alnum:]-]+ sshd\[[0-9]+\]: PAM pam_putenv: delete non-existent entry; [[:alnum:]]+$
-^\w{3} [ :0-9]{11} [._[:alnum:]-]+ sshd\[[0-9]+\]: Server listening on [:[:xdigit:].]+ port 22\.$
+^\w{3} [ :0-9]{11} [._[:alnum:]-]+ sshd\[[0-9]+\]: Server listening on [:[:xdigit:].]+ port [[:digit:]]+\.$
 ^\w{3} [ :0-9]{11} [._[:alnum:]-]+ sshd\[[0-9]+\]: subsystem request for sftp$
 ^\w{3} [ :0-9]{11} [._[:alnum:]-]+ sshd\[[0-9]+\]: Received disconnect from [:[:xdigit:].]+: [0-9]+: Client disconnect$
 ^\w{3} [ :0-9]{11} [._[:alnum:]-]+ sshd\[[0-9]+\]: Received disconnect from [:[:xdigit:].]+: [0-9]+: Disconnect requested by Windows SSH Client\.$




More information about the Logcheck-commits mailing list