RedHat ÈÕµµ:
ϵͳµÄÄÇЩѶϢÒÔ¼°Ó¦¸Ã¼Ç¼ÔÚÄÇЩµµ°¸, »òÈçºÎÏÔʾ, ÊÇÓÉ /etc/syslog.conf À´¿ØÖƵÄ.
syslog.conf µÄ¸ñʽ, Áíƪ˵Ã÷.
ÒÔÏÂÊÇ RedHat µÄ /var/log Ŀ¼ÖÐһЩÖØÒªµÄ¼Ç¼µµ°¸µÄ˵Ã÷.
1. /var/log/lastlog : ¼Ç¼ÿ¸öʹÓÃÕß×î½üÇ©ÈëϵͳµÄʱ¼ä, Òò´Ëµ±Ê¹ÓÃÕßÇ©Èëʱ, ¾Í»áÏÔʾÆäÉÏ´ÎÇ©ÈëµÄʱ¼ä, ÄúÓ¦¸Ã×¢ÒâÒ»ÏÂÕâ¸öʱ¼ä, Èô²»ÊÇÄúÉÏ´ÎÇ©ÈëµÄʱ¼ä, ±íʾÄúµÄÕʺſÉÄܱ»È˵ÁÓÃÁË. ´Ëµµ¿ÉÓà /usr/bin/lastlog Ö¸Áî¶ÁÈ¡.
2. /var/run/utmp : ¼Ç¼ÿ¸öʹÓÃÕßÇ©ÈëϵͳµÄʱ¼ä, who, users, finger µÈÖ¸Áî»á²éÕâ¸öµµ°¸.
3. /var/log/wtmp : ¼Ç¼ÿ¸öʹÓÃÕßÇ©Èë¼°Ç©³öµÄʱ¼ä, last Õâ¸öÖ¸Áî»á²éÕâ¸öµµ°¸. Õâ¸öµµ°¸Ò²¼Ç¼ shutdown ¼° reboot µÄ¶¯×÷.
4. /var/log/secure : ¼Ç¼ÄÇЩվ̨Á¬Ïß½øÀ´, ÒÔ¼°ÄÇЩλַÁ¬Ïßʧ°Ü.
5. /var/log/maillog : ¼Ç¼ sendmail ¼° pop µÈÏà¹ØѶϢ.
6. /var/log/cron : ¼Ç¼ crontab µÄÏà¹ØѶϢ
7. /var/log/dmesg : /bin/dmesg »á½«Õâ¸öµµ°¸ÏÔʾ³öÀ´, ËüÊÇ¿ª»úʱµÄ»ÃæѶϢ.
8. /var/log/xferlog : ¼Ç¼ÄÇЩλַÀ´ ftp ÄÃÈ¡ÄÇЩµµ°¸.
9. /var/log/messages : ϵͳ´ó²¿·ÝµÄѶϢ½Ô¼Ç¼ÔÚ´Ë, °üÀ¨ login, check password , failed login, ftp, su µÈ.
lastlog ¼° utmp µÄ½á¹¹ÔÚ /usr/include/utmpbits.h ÖÐ.
wtmp Ö»ÓÐ last ²ÅÄܶÁÈ¡, ÊÇ·ñ¿ÉÒÔдһ֧³ÌʽÀ´¶ÁÈ¡ËüÄØ?
Ö»ÒªÄÜŪÇå³þ wtmp µÄ¸ñʽ, Ó¦¸ÃÊÇ¿ÉÐеÄ.(ÊÂʵÉÏÕâÖÖ³ÌʽĿǰÓм¸Ö§,Ö»ÒªÊÇÍæcrackerÕ߶¼ÊDZر¸µÄ)
wtmp µÄ¸ñʽºÍ utmp Ïàͬ¡£
dsfaaaaa ÓÚ 2006-07-25 12:04:37·¢±í:
ding
À÷ìÇ ÓÚ 2006-07-25 09:31:15·¢±í:
¶¥