[Logcheck-commits] r1445 - in logcheck/trunk: debian
	rulefiles/linux/ignore.d.server
    madduck at users.alioth.debian.org 
    madduck at users.alioth.debian.org
       
    Sun Jan 14 17:22:19 CET 2007
    
    
  
Author: madduck
Date: 2007-01-14 17:22:19 +0100 (Sun, 14 Jan 2007)
New Revision: 1445
Modified:
   logcheck/trunk/debian/changelog
   logcheck/trunk/rulefiles/linux/ignore.d.server/openvpn
Log:
* ignore.d.server/openvpn: ignore messages with IP address of peers of newly
  established connections.
Modified: logcheck/trunk/debian/changelog
===================================================================
--- logcheck/trunk/debian/changelog	2007-01-14 13:24:09 UTC (rev 1444)
+++ logcheck/trunk/debian/changelog	2007-01-14 16:22:19 UTC (rev 1445)
@@ -47,6 +47,8 @@
   * ignore.d.server/openvpn, violations.ignore.d/logcheck-openvpn: also honour
     "openvpn" as process name, which seems to be used by clients; thanks to
     Vincent Danjean for being persistent (closes: #406179).
+  * ignore.d.server/openvpn: ignore messages with IP address of peers of newly
+    established connections.
 
   * ignore.d.server/dhclient: updated to new style for informational messages.
 
@@ -57,7 +59,7 @@
     This should hopefully fix some of the "Check temporary directory"
     messages.
 
- -- martin f. krafft <madduck at debian.org>  Fri, 12 Jan 2007 11:46:10 +0100
+ -- martin f. krafft <madduck at debian.org>  Sun, 14 Jan 2007 17:21:43 +0100
 
 logcheck (1.2.52) unstable; urgency=low
 
Modified: logcheck/trunk/rulefiles/linux/ignore.d.server/openvpn
===================================================================
--- logcheck/trunk/rulefiles/linux/ignore.d.server/openvpn	2007-01-14 13:24:09 UTC (rev 1444)
+++ logcheck/trunk/rulefiles/linux/ignore.d.server/openvpn	2007-01-14 16:22:19 UTC (rev 1445)
@@ -47,3 +47,4 @@
 ^\w{3} [ :0-9]{11} [._[:alnum:]-]+ (openvpn|ovpn-[._[:alnum:]-]+)\[[0-9]+\]: Initialization Sequence Completed$
 ^\w{3} [ :0-9]{11} [._[:alnum:]-]+ (openvpn|ovpn-[._[:alnum:]-]+)\[[0-9]+\]: MULTI: TCP INIT maxclients=[[:digit:]]+ maxevents=[[:digit:]]+$
 ^\w{3} [ :0-9]{11} [._[:alnum:]-]+ (openvpn|ovpn-[._[:alnum:]-]+)\[[0-9]+\]: [-_.[:alnum:]]+/[.[:digit:]]{7,15}:[[:digit:]]{2,5} SENT CONTROL \[[-_.[:alnum:]]+\]: 'PUSH_REPLY(,redirect-gateway,route [.[:digit:]]{7,15})?,ping [[:digit:]]+,ping-restart [[:digit:]]+,ifconfig [.[:digit:]]{7,15} [.[:digit:]]{7,15}' \(status=[[:digit:]]+\)$
+^\w{3} [ :0-9]{11} [._[:alnum:]-]+ (openvpn|ovpn-[._[:alnum:]-]+)\[[0-9]+\]: [-_.[:alnum:]]+,[.[:digit:]]{7,15}$
    
    
More information about the Logcheck-commits
mailing list