LinuxQuestions.org
Latest LQ Deal: Latest LQ Deals
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 05-15-2003, 02:11 PM   #1
tunedLow
Member
 
Registered: Sep 2001
Location: Salt Lake City
Distribution: Slackware 8.1
Posts: 133

Rep: Reputation: 15
Log tcp wrappers


I'm trying to log tcp wrappers and am having trouble getting it started. I'm running slackware 8.1 and using the default tcp-wrappers.

To find out what the facility was I downloaded another version of tcp-wrappers, and it's default facility name was MAIL_LOG.

I then added this line (separated by tabs) to my syslogd.conf:
MAIL_LOG.* /var/log/authTCP

Then I touched authTCP, restarted inetd, syslogd. But I get nothing in the log when I get incoming ssh conenctions - which is being checked by tcp-wrappers.



I think the real problem I'm having is understanding how tcp-wrappers gets started, and how it's different from tcpd. I don't have tcpd running, but when I make changes to my hosts.allow or deny files they stick. Any suggested readings would be appreciated.

Thanks.
 
Old 05-15-2003, 08:48 PM   #2
unSpawn
Moderator
 
Registered: May 2001
Posts: 29,415
Blog Entries: 55

Rep: Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600
If the facility is MAIL_LOG, then your line in syslog will be
mail.*/path/to/logfile #watch for tab usage.
Also you'll need to add some usefull logging in /etc/hosts.{allow,deny}, spawn lines 'n such.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
tcp wrappers or iptables? dominant Linux - Security 3 02-23-2004 12:56 PM
TCP Wrappers ? juanb Linux - Newbie 1 01-31-2004 01:35 PM
Firewall vs. TCP-Wrappers Crashed_Again Linux - Security 8 01-31-2003 06:35 AM
tcp wrappers --with-tcp-wrappers ForumKid Linux - Security 2 01-04-2002 04:01 PM
TCP Wrappers ltrain Linux - Security 6 05-31-2001 10:40 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 02:05 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration