Re: syslog fra remote host

From: Morten Winther (none@freebsd--mwi.dk.lh.bsd-dk.dk)
Date: Fri 04 Jun 2004 - 18:59:55 CEST


Date: Fri, 04 Jun 2004 18:59:55 +0200
From: Morten Winther <none@freebsd--mwi.dk.lh.bsd-dk.dk>
To: bsd-dk@bsd-dk.dk
Subject: Re: syslog fra remote host

Michael Knudsen wrote:

> Har du husket at sige, at den gerne maa modtage log fra netvaerket?
>
> -u Select the historical ``insecure'' mode, in which
> syslogd will accept input from the UDP port. Some software
> wants this, but you can be subjected to a variety of attacks
> over the network, including attackers remotely filling logs.
>
> Ovenstaaende stammer fra OpenBSD's syslogd, der altid aabner en socket,
> da denne ogsaa skal bruges, hvis man skal _sende_ logs.

Glemte at skrive jeg bruger FreeBSD som ikke har den option

      -u Unique priority logging. Only log messages at the
specified pri-
              ority. Without this option, messages at the stated
priority or
              higher are logged. This option changes the default comparison
              from ``=>'' to ``=''

Ved dog ike om jeg skal bruge -a nåt jeg bare skal tillade alle hosts.

      -a allowed_peer
              Allow allowed_peer to log to this syslogd using UDP datagrams.
              Multiple -a options may be specified.

              Allowed_peer can be any of the following:

              ipaddr/masklen[:service]

-- 
Best regards

Morten Winther



This archive was generated by hypermail 2b30 : Wed 15 Nov 2006 - 18:24:41 CET