- 论坛徽章:
- 0
|
=============系统是 Jul 11 10:18:52 重启的,下面是syslog日志中,重启前后的记录:
Jul 11 10:09:01 debian /USR/SBIN/CRON[25192]: (root) CMD ( [ -d /var/lib/php5 ] && find /var/lib/php5/ -type f -cmin +$(/usr/li
b/php5/maxlifetime) -print0 | xargs -r -0 rm)
Jul 11 10:14:45 debian ntpd[2340]: peer 222.73.214.1 now invalid
Jul 11 10:17:01 debian /USR/SBIN/CRON[25310]: (root) CMD ( cd / && run-parts --report /etc/cron.hourly)
Jul 11 10:18:52 debian syslogd 1.4.1#18: restart.
Jul 11 10:18:52 debian kernel: klogd 1.4.1#18, log source = /proc/kmsg started.
Jul 11 10:18:52 debian kernel: Linux version 2.6.18-6-686 (debianian 2.6.18.dfsg.1-18etch6) (dannf@debianian.org) (gcc version 4.1.2 2
0061115 (prerelease) (debianian 4.1.1-21)) #1 SMP Fri Jun 6 22:22:11 UTC 2008
Jul 11 10:18:52 debian kernel: BIOS-provided physical RAM map:
====================下面是messages的日志:
Jul 11 09:22:55 debian kernel: sky2 eth0: Link is down.
Jul 11 09:23:02 debian kernel: sky2 eth0: Link is up at 100 Mbps, full duplex, flow control none
Jul 11 09:51:22 debian -- MARK --
Jul 11 10:11:22 debian -- MARK --
Jul 11 10:18:52 debian syslogd 1.4.1#18: restart.
Jul 11 10:18:52 debian kernel: klogd 1.4.1#18, log source = /proc/kmsg started.
Jul 11 10:18:52 debian kernel: Linux version 2.6.18-6-686 (debianian 2.6.18.dfsg.1-18etch6) (dannf@debianian.org) (gcc version 4.1.2 2
0061115 (prerelease) (debianian 4.1.1-21)) #1 SMP Fri Jun 6 22:22:11 UTC 2008
Jul 11 10:18:52 debian kernel: BIOS-provided physical RAM map:
====================另外,问个其它问题。
在auth.log中发现,每天都有人使用不同的用户名试图ssh到机器。请问一般怎么防护比较好? |
|