[Logcheck-commits] martin f. krafft: * ignore.d.server/schroot:

Gerfried Fuchs alfie at alioth.debian.org
Wed Jul 16 11:03:49 UTC 2008


Module: logcheck
Branch: etch-backports
Commit: 7760b5e00f8a206c92fa9f52edb29909ab3ca8c0
URL:    http://git.debian.org/?p=logcheck/logcheck.git;a=commit;h=7760b5e00f8a206c92fa9f52edb29909ab3ca8c0

Author: martin f. krafft <madduck at debian.org>
Date:   Wed Jun 25 12:06:51 2008 +0100

* ignore.d.server/schroot:
  - ignore operational schroot messages for logins and running commands.

---

 debian/changelog                           |    2 ++
 debian/logcheck-database.lintian-overrides |    1 +
 rulefiles/linux/ignore.d.server/schroot    |    3 +++
 3 files changed, 6 insertions(+), 0 deletions(-)

diff --git a/debian/changelog b/debian/changelog
index 1ec5148..b39cb5b 100644
--- a/debian/changelog
+++ b/debian/changelog
@@ -40,6 +40,8 @@ logcheck (1.2.65) unstable; urgency=low
       of connection messages).
     - ignore messages about packets with wrong encapsulated lengths, which are
       mostly portscanners, or hosts connecting to openvpn on ports like 443.
+  * ignore.d.server/schroot:
+    - ignore operational schroot messages for logins and running commands.
   * fix wording in header.txt (closes: #472937).
 
  -- martin f. krafft <madduck at debian.org>  Tue, 24 Jun 2008 18:56:26 +0100
diff --git a/debian/logcheck-database.lintian-overrides b/debian/logcheck-database.lintian-overrides
index 6ac2d56..a0aca49 100644
--- a/debian/logcheck-database.lintian-overrides
+++ b/debian/logcheck-database.lintian-overrides
@@ -147,6 +147,7 @@ logcheck-database binary: non-standard-file-perm etc/logcheck/ignore.d.server/sa
 logcheck-database binary: non-standard-file-perm etc/logcheck/ignore.d.server/samba 0640 != 0644
 logcheck-database binary: non-standard-file-perm etc/logcheck/ignore.d.server/saned 0640 != 0644
 logcheck-database binary: non-standard-file-perm etc/logcheck/ignore.d.server/saslauthd 0640 != 0644
+logcheck-database binary: non-standard-file-perm etc/logcheck/ignore.d.server/schroot 0640 != 0644
 logcheck-database binary: non-standard-file-perm etc/logcheck/ignore.d.server/scponly 0640 != 0644
 logcheck-database binary: non-standard-file-perm etc/logcheck/ignore.d.server/slapd 0640 != 0644
 logcheck-database binary: non-standard-file-perm etc/logcheck/ignore.d.server/smartd 0640 != 0644
diff --git a/rulefiles/linux/ignore.d.server/schroot b/rulefiles/linux/ignore.d.server/schroot
new file mode 100644
index 0000000..5fef074
--- /dev/null
+++ b/rulefiles/linux/ignore.d.server/schroot
@@ -0,0 +1,3 @@
+^\w{3} [ :[:digit:]]{11} [._[:alnum:]-]+ schroot\[[[:digit:]]+\]: \(pam_unix\) session opened for user [-_.[:alnum:]]+ by ([-_.[:alnum:]]+)?\(uid=[[:digit:]]+\)$
+^\w{3} [ :[:digit:]]{11} [._[:alnum:]-]+ schroot\[[[:digit:]]+\]: \[[-._[:alnum:]]+ chroot\] \([-_.[:alnum:]]+->[-_.[:alnum:]]+\) Running login shell: '[-._/[:alnum:]]+'$
+^\w{3} [ :[:digit:]]{11} [._[:alnum:]-]+ schroot\[[[:digit:]]+\]: \[[-._[:alnum:]]+ chroot\] \([-_.[:alnum:]]+->[-_.[:alnum:]]+\) Running command: ".+"$




More information about the Logcheck-commits mailing list