two copies of login in iptables
Evertime time an IP is logging in via ssh, it was loggin in /var/log/secure. As I check /var/log/secure, there are two logs of logins. One is the actual time (8:48) and the other one is less 8 hours (0:048).
Feb 5 00:48:08 SERVER sshd[19937]: Accepted password for foo from ::ffff:X.X.X.X port 1597 ssh2
Feb 5 08:48:08 SERVER sshd[19936]: Accepted password for foo from ::ffff:X.X.X.X port 1597 ssh2
How can I remove the wrong log which is 00:48?
Last edited by packets; 02-04-2007 at 08:40 PM.
|