SUMMARY: Can syslogd capture user login?

From: Krisztian Toth <sahin_at_IRIS.geobio.elte.hu>
Date: Sat, 26 Jul 1997 16:37:11 +0200 (METDST)

Hello,

My orginal mail was the following:


> Hello Gurus,
>
> Maybe it's a newbie question... So, Can syslogd capture user login? I'm new
> in the Digital Unix. My system is 4.0b.
>
> Here's my syslog.conf file:
>
> ...
> kern.debug /var/adm/syslog.dated/kern.log
> user.debug /var/adm/syslog.dated/user.log
> mail.debug /var/adm/syslog.dated/mail.log
> daemon.debug /var/adm/syslog.dated/daemon.log
> auth.debug /var/adm/syslog.dated/auth.log
> syslog.debug /var/adm/syslog.dated/syslog.log
> lpr.debug /var/adm/syslog.dated/lpr.log
>
> msgbuf.err /var/adm/crash/msgbuf.savecore
>
> kern.debug /var/adm/messages
> *.debug /dev/console
>
> When I was looking the auth.log file, I realised that it only logged
> down SU access. However, it did not log any other interface login access.
>
> I would like to see every login action in the logfile and on the console.
>
> Is this possibile? I know IRIX and Linux know this.
>
> Can you help me? Now I use C2, and I won't like use the audit system.
>
> Thank you for your all trouble!
>
>
> Krisztian Toth
>
>
>

--------------------------------------------------------------------------------

The solution is:


     /var/adm/sialog
     
     If the file doesn't exist, then simply create it, and it should be
     used from tehre on. Records all logins as well as su's and such...

     and the tcp_wrappers package will log connection attempts via
     telnet, ftp, etc.


--------------------------------------------------------------------------------

Many thanks for

Jason Neil <Jason_Neil_at_CITYMAX.CO.UK>
Julio Del-Rio <Julio.Del-Rio_at_kellogg.com>
Elliot Smorodinsky <elliots_at_epower.net>
Sheila H. Franklin, X8705 <sfrankl_at_nswc.navy.mil>
Alex_Nord_at_jabil.com
Larry Griffith <larry_at_garfield.wsc.mass.edu>
MC.Vialatte_at_custsv.univ-bpclermont.fr





                        Krisztian Toth
Received on Sat Jul 26 1997 - 16:48:33 NZST

This archive was generated by hypermail 2.4.0 : Wed Nov 08 2023 - 11:53:36 NZDT