LinuxQuestions.org
Welcome to the most active Linux Forum on the web.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 11-11-2003, 09:24 AM   #1
TheIrish
Member
 
Registered: Oct 2003
Location: ITALY
Distribution: Debian, Ubuntu, Fedora
Posts: 137

Rep: Reputation: 15
iptables and stdout... god, I hate this!


Hi guys! Easy and quick question!
I set some rules in iptables script for doing some logging (notice level).
I added the following line in syslog.conf:
kern.notice /var/log/ipt.log
so I thought, we're ready for rock'n'roll... it works, alright, but why the hell it keeps sending its logs to the standard output too?
Maybe I'm idiot, but I can't find out.
Thanks!
 
Old 11-11-2003, 04:49 PM   #2
unSpawn
Moderator
 
Registered: May 2001
Posts: 29,415
Blog Entries: 55

Rep: Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600
Maybe check "egrep /etc/syslog.conf -e "^kern.*(cons|tty|std)""
 
Old 11-12-2003, 05:13 AM   #3
markus1982
Senior Member
 
Registered: Aug 2002
Location: Stuttgart (Germany)
Distribution: Debian/GNU Linux
Posts: 1,467

Rep: Reputation: 46
I also have the same problem and did not find a solution yet so I'm looking forward for a solution. My syslog.conf looks like:
Code:
#  /etc/syslog.conf	Configuration file for syslogd.
#
#			For more information see syslog.conf(5)
#			manpage.


# --------------------------------------------------------------------
# logging by priority
# --------------------------------------------------------------------
*.=crit				/var/log/critical.log
*.=emerg			/var/log/emergency.log
*.=err				/var/log/error.log
*.=info;\
	cron.none;\
	kern.none;\
	mail.none;		/var/log/info.log
# --------------------------------------------------------------------



# --------------------------------------------------------------------
# logging by facility
# --------------------------------------------------------------------
auth,authpriv.*			/var/log/auth.log
cron.*				-/var/log/cron.log
daemon.*			-/var/log/daemon.log
kern.=info			-/var/log/kern.info
kern.*;kern.!=info;		-/var/log/kern.log
lpr.*				-/var/log/lpr.log
mail.*				-/var/log/mail.log
news.crit			/var/log/news/news.crit
news.err			/var/log/news/news.err
news.notice			-/var/log/news/news.notice
user.*				-/var/log/user.log
uucp.*				-/var/log/uucp.log
# --------------------------------------------------------------------



# --------------------------------------------------------------------
# logging to the virtual consoles (= display)
# --------------------------------------------------------------------
daemon,mail.*;\
	news.=crit;news.=err;news.=notice;\
	*.=debug;*.=info;\
	*.=notice;*.=warn	/dev/tty8
# --------------------------------------------------------------------
 
Old 11-12-2003, 10:09 AM   #4
TheIrish
Member
 
Registered: Oct 2003
Location: ITALY
Distribution: Debian, Ubuntu, Fedora
Posts: 137

Original Poster
Rep: Reputation: 15
Unluckly, nothing should be going to any terminal... who knows...
 
Old 11-13-2003, 02:28 AM   #5
repe
Member
 
Registered: Aug 2003
Location: Finland
Distribution: Slackware 9.0 & 9.1. FreeBSD 4.8 & 5.1
Posts: 30

Rep: Reputation: 15
Quote:
# --------------------------------------------------------------------
# logging to the virtual consoles (= display)
# --------------------------------------------------------------------
daemon,mail.*;\
news.=crit;news.=err;news.=notice;\
*.=debug;*.=info;\
*.=notice;*.=warn /dev/tty8
# --------------------------------------------------------------------
 
Old 11-17-2003, 10:11 AM   #6
unSpawn
Moderator
 
Registered: May 2001
Posts: 29,415
Blog Entries: 55

Rep: Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600
Just thought of it, it's prolly the loglevel, as in syslog "facility.level".
If you've got magic sysrq keys, try "ALT+SYSRQ+5" and see if that goes away, or try adjusting the firewall scripts logrules with a different loglevel.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
/dev/stdout nbframer Linux - Newbie 6 09-10-2005 04:48 PM
what is stdout stefaandk Linux - Newbie 1 09-06-2005 07:20 PM
stdout with tk? sk8guitar Programming 1 07-30-2003 02:48 PM
God I hate Blue curve... Thaidog Linux - Newbie 5 05-26-2003 07:05 AM
sucker newbie needs some god-like info on iptables ironChimp Linux - Networking 9 02-28-2003 04:07 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 05:05 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration