Newbie-Question: logging security relevant data

From: <a.engels_at_gmx.net>
Date: Thu, 26 Apr 2001 11:43:32 +0200 (MEST)

Dear colleagues,

I have a question about logging mechanisms in Digital Unix 4.0F and 5.1.

There seem to be 2 ways methods: syslogd and auditd.

My goal is to be able to easily determine some informations (Which user
logged in? Which service did he use (ssh, ftp, telnet, pop3, imap, nfs etc) ?
Which ip did he use?). With auditd it seems to be possible to log such data,
however its very confusing and I think, there is not always the information,
which was the user's ip!

Could you give me an adive or mabye the url of a tutorial, so I know how to
deal best with this issue?

Thanks in advance

-- 
GMX - Die Kommunikationsplattform im Internet.
http://www.gmx.net
Received on Thu Apr 26 2001 - 09:44:59 NZST

This archive was generated by hypermail 2.4.0 : Wed Nov 08 2023 - 11:53:42 NZDT