/l3/users/sergo/xg-ids/localhost.localdomain/root :1 :2 :3 :4 :5 :6 :7 :8 :9 :10 :11 :12 :13 :14 :15 :16 :17 :18 :19 |
|
#ls -l
total 3 -rw-r--r-- 1 root root 179 2006-11-12 21:16 dbootstrap_settings -rw-r--r-- 1 root root 1336 2006-11-12 21:16 install-report.template |
#vi /etc/X11/xorg.conf
100c100,101 < Modes "1280x1024" "1280x960" "1280x854" "1280x800" "1280x768" "1200x800" "1152x864" "1152x768" "1024x768" "800x600" "640x480" --- > # Modes "1280x1024" "1280x960" "1280x854" "1280x800" "1280x768" "1200x800" "1152x864" "1152x768" "1024x768" "800x600" "640x480" > Modes "1152x864" "1152x768" "1024x768" "800x600" "640x480" |
#/etc/init.d/gdm start
Starting GNOME Display Manager: gdm. |
#vi /etc/X11/xorg.conf
109c109,110 < Modes "1280x1024" "1280x960" "1280x854" "1280x800" "1280x768" "1200x800" "1152x864" "1152x768" "1024x768" "800x600" "640x480" --- > #Modes "1280x1024" "1280x960" "1280x854" "1280x800" "1280x768" "1200x800" "1152x864" "1152x768" "1024x768" "800x600" "640x480" > Modes "1152x864" "1152x768" "1024x768" "800x600" "640x480" |
#/etc/init.d/gdm restart
Stopping GNOME Display Manager: gdm. Starting GNOME Display Manager: gdm. |
#ping m02
PING linux2.unix.nt (192.168.15.2) 56(84) bytes of data. 64 bytes from yuriksat.yuriksat.linux.nt (192.168.15.2): icmp_seq=1 ttl=64 time=0.079 ms --- linux2.unix.nt ping statistics --- 1 packets transmitted, 1 received, 0% packet loss, time 0ms rtt min/avg/max/mdev = 0.079/0.079/0.079/0.000 ms |
#ping m01
PING fbsd1.unix.nt (192.168.15.21) 56(84) bytes of data. --- fbsd1.unix.nt ping statistics --- 1 packets transmitted, 0 received, 100% packet loss, time 0ms |
#w
12:13:41 up 23 min, 2 users, load average: 0.08, 0.13, 0.09 USER TTY FROM LOGIN@ IDLE JCPU PCPU WHAT user :0 - 11:57 ?xdm? 44.60s 0.07s /bin/sh /usr/bin/x-session-manager root pts/3 192.168.15.254 12:13 2.00s 0.03s 0.03s script -f -q /root/.lilalo//983667512026120452-116341 |
#w
12:14:59 up 24 min, 3 users, load average: 0.29, 0.20, 0.12 USER TTY FROM LOGIN@ IDLE JCPU PCPU WHAT user :0 - 11:57 ?xdm? 48.59s 0.07s /bin/sh /usr/bin/x-session-manager root pts/3 192.168.15.254 12:13 9.00s 0.04s 0.03s script -f -q /root/.lilalo//983667512026120452-116341 user pts/6 linux202.linux.n 12:13 2.00s 0.01s 0.01s script -f -q /home/user/.lilalo//2880111551088016541- |
#ps ax
PID TTY STAT TIME COMMAND 1 ? S 0:00 ini 2 ? S 0:00 [keventd] 3 ? SN 0:00 [ksoftirqd_CPU0] 4 ? S 0:00 [kswapd] 5 ? S 0:00 [bdflush] 6 ? S 0:00 [kupdated] 99 ? S 0:00 [kjournald] 121 ? S 0:00 [kjournald] 122 ? S 0:00 [kjournald] ... 2244 pts/6 Ss+ 0:00 script -f -q /home/user/.lilalo//2880111551088016541-1163412823.script 2248 ? Ss 0:01 l3-agent 2281 pts/6 S+ 0:00 script -f -q /home/user/.lilalo//2880111551088016541-1163412823.script 2282 pts/7 Ss 0:00 bash -i 2303 pts/7 S+ 0:00 script -f -q /root/.lilalo//10996313191955626717-1163412833.script 2340 pts/7 S+ 0:00 script -f -q /root/.lilalo//10996313191955626717-1163412833.script 2341 pts/8 Ss 0:00 bash -i 2374 pts/4 S+ 0:01 apt-get install screen 2376 pts/4 S+ 0:00 /usr/lib/apt/methods/http 2377 pts/8 R+ 0:00 ps ax |
#apt-get install screen
Reading package lists... Done Building dependency tree... Done The following NEW packages will be installed screen 0 upgraded, 1 newly installed, 0 to remove and 350 not upgraded. Need to get 586kB of archives. After unpacking 913kB of additional disk space will be used. WARNING: The following packages cannot be authenticated! screen Install these packages without verification [y/N]? Y Get: 1 http://debian.org.ua unstable/main screen 4.0.3-0.2 [586kB] Fetched 586kB in 8s (66.6kB/s) Preconfiguring packages ... Selecting previously deselected package screen. (Reading database ... 69334 files and directories currently installed.) Unpacking screen (from .../screen_4.0.3-0.2_i386.deb) ... Setting up screen (4.0.3-0.2) ... |
#ps axu
USER PID %CPU %MEM VSZ RSS TTY STAT START TIME COMMAND root 1 0.0 0.0 1400 508 ? S 11:50 0:00 ini root 2 0.0 0.0 0 0 ? S 11:50 0:00 [keventd] root 3 0.0 0.0 0 0 ? SN 11:50 0:00 [ksoftirqd_CPU0] root 4 0.0 0.0 0 0 ? S 11:50 0:00 [kswapd] root 5 0.0 0.0 0 0 ? S 11:50 0:00 [bdflush] root 6 0.0 0.0 0 0 ? S 11:50 0:00 [kupdated] root 99 0.0 0.0 0 0 ? S 11:50 0:00 [kjournald] root 121 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 122 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] ... root 2207 0.0 0.3 2548 1556 pts/5 Ss 12:13 0:00 bash -i user 2243 0.0 0.4 7124 2272 ? S 12:13 0:00 sshd: user@pts/6 user 2244 0.0 0.0 1716 484 pts/6 Ss+ 12:13 0:00 script -f -q /home/user/.lilalo//2880111551088016541-11 user 2248 1.8 1.3 9260 6908 ? Ss 12:13 0:01 l3-agent user 2281 0.0 0.1 1720 592 pts/6 S+ 12:13 0:00 script -f -q /home/user/.lilalo//2880111551088016541-11 user 2282 0.0 0.3 3416 1904 pts/7 Ss 12:13 0:00 bash -i root 2303 0.0 0.0 1400 420 pts/7 S+ 12:13 0:00 script -f -q /root/.lilalo//10996313191955626717-116341 root 2340 0.0 0.1 1408 516 pts/7 S+ 12:13 0:00 script -f -q /root/.lilalo//10996313191955626717-116341 root 2341 0.0 0.3 2556 1600 pts/8 Ss+ 12:13 0:00 bash -i root 2442 0.0 0.1 2396 848 pts/5 R+ 12:15 0:00 ps axu |
#ps aux | wc -l
93 |
#ls -l /dev/log
root 2088 0.0 0.4 7248 2444 ? Ss 12:13 0:00 sshd: root@pts/3 root 2090 0.0 0.4 7248 2444 ? S 12:13 0:00 sshd: root@pts/3 root 2092 0.0 0.0 1716 484 pts/3 Ss+ 12:13 0:00 script -f -q /roo t/.lilalo//983667512026120452-1163412789.script root 2129 0.0 0.1 1720 592 pts/3 S+ 12:13 0:00 script -f -q /roo t/.lilalo//983667512026120452-1163412789.script [root@linux2:root]# ps aux | wc -l 93 [root@linux2:root]# ls -l /dev/log srw-rw-rw- 1 root root 0 2006-11-13 11:53 /dev/log [root@linux2:root]# srw-rw-rw- 1 root root 0 2006-11-13 11:53 /dev/log root 4 0.0 0.0 0 0 ? S 11:50 0:00 [kswapd] root 5 0.0 0.0 0 0 ? S 11:50 0:00 [bdflush] root 6 0.0 0.0 0 0 ? S 11:50 0:00 [kupdated] root 99 0.0 0.0 0 0 ? S 11:50 0:00 [kjournald] root 121 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 122 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 123 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 124 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 479 0.0 0.0 1384 436 ? S<s 11:52 0:00 udevd |
#lsof | grep /dev/log
root 2092 0.0 0.0 1716 484 pts/3 Ss+ 12:13 0:00 script -f -q /roo t/.lilalo//983667512026120452-1163412789.script root 2129 0.0 0.1 1720 592 pts/3 S+ 12:13 0:00 script -f -q /roo t/.lilalo//983667512026120452-1163412789.script [root@linux2:root]# ps aux | wc -l 93 [root@linux2:root]# ls -l /dev/log srw-rw-rw- 1 root root 0 2006-11-13 11:53 /dev/log [root@linux2:root]# lsof | grep /dev/log syslogd 1219 root 0u unix 0xc161e6e0 1712 /dev/log [root@linux2:root]# syslogd 1219 root 0u unix 0xc161e6e0 1712 /dev/log root 4 0.0 0.0 0 0 ? S 11:50 0:00 [kswapd] root 5 0.0 0.0 0 0 ? S 11:50 0:00 [bdflush] root 6 0.0 0.0 0 0 ? S 11:50 0:00 [kupdated] root 99 0.0 0.0 0 0 ? S 11:50 0:00 [kjournald] root 121 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 122 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 123 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 124 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 479 0.0 0.0 1384 436 ? S<s 11:52 0:00 udevd |
#strings `which syslogd` | grep /etc
root 2129 0.0 0.1 1720 592 pts/3 S+ 12:13 0:00 script -f -q /roo t/.lilalo//983667512026120452-1163412789.script [root@linux2:root]# ps aux | wc -l 93 [root@linux2:root]# ls -l /dev/log srw-rw-rw- 1 root root 0 2006-11-13 11:53 /dev/log [root@linux2:root]# lsof | grep /dev/log syslogd 1219 root 0u unix 0xc161e6e0 1712 /dev/log [root@linux2:root]# strings `which syslogd` | grep /etc /etc/syslog.conf [root@linux2:root]# /etc/syslog.conf root 4 0.0 0.0 0 0 ? S 11:50 0:00 [kswapd] root 5 0.0 0.0 0 0 ? S 11:50 0:00 [bdflush] root 6 0.0 0.0 0 0 ? S 11:50 0:00 [kupdated] root 99 0.0 0.0 0 0 ? S 11:50 0:00 [kjournald] root 121 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 122 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 123 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 124 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 479 0.0 0.0 1384 436 ? S<s 11:52 0:00 udevd |
#dpkg -S syslogd
[root@linux2:root]# strings `which syslogd` | grep /etc /etc/syslog.conf [root@linux2:root]# dpkg -S syslogd sysklogd: /usr/sbin/syslogd-listfiles sysklogd: /usr/share/man/man8/syslogd-listfiles.8.gz sysklogd: /usr/share/man/man8/syslogd.8.gz sysklogd: /sbin/syslogd [root@linux2:root]# sysklogd: /usr/sbin/syslogd-listfiles sysklogd: /usr/share/man/man8/syslogd-listfiles.8.gz sysklogd: /usr/share/man/man8/syslogd.8.gz sysklogd: /sbin/syslogd root 4 0.0 0.0 0 0 ? S 11:50 0:00 [kswapd] root 5 0.0 0.0 0 0 ? S 11:50 0:00 [bdflush] root 6 0.0 0.0 0 0 ? S 11:50 0:00 [kupdated] root 99 0.0 0.0 0 0 ? S 11:50 0:00 [kjournald] root 121 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 122 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 123 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 124 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 479 0.0 0.0 1384 436 ? S<s 11:52 0:00 udevd |
#dpkg -L sysklogd | grep /etc
/etc/cron.weekly /etc/cron.weekly/sysklogd /etc/syslog.conf [root@linux2:root]# /etc /etc/init.d /etc/init.d/sysklogd /etc/cron.daily /etc/cron.daily/sysklogd /etc/cron.weekly /etc/cron.weekly/sysklogd /etc/syslog.conf root 4 0.0 0.0 0 0 ? S 11:50 0:00 [kswapd] root 5 0.0 0.0 0 0 ? S 11:50 0:00 [bdflush] root 6 0.0 0.0 0 0 ? S 11:50 0:00 [kupdated] root 99 0.0 0.0 0 0 ? S 11:50 0:00 [kjournald] root 121 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 122 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 123 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 124 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 479 0.0 0.0 1384 436 ? S<s 11:52 0:00 udevd |
#less /etc/syslog.conf
|
#logger Hell0
|
#tail /var/log/messages
Nov 13 12:23:22 localhost logger: Hell0 [root@linux2:root]# Nov 13 11:53:10 localhost kernel: JEDEC: Found no ICH2 rom device at location zero Nov 13 11:53:10 localhost kernel: pci_hotplug: PCI Hot Plug PCI Core version: 0.5 Nov 13 11:53:10 localhost kernel: pci_hotplug: PCI Hot Plug PCI Core version: 0.5 Nov 13 11:53:12 localhost lpd[1281]: restarted Nov 13 11:53:16 localhost kernel: apm: BIOS version 1.2 Flags 0x07 (Driver version 1.16) Nov 13 11:58:27 localhost kernel: inserting floppy driver for 2.4.27-2-686 Nov 13 11:58:27 localhost kernel: Floppy drive(s): fd0 is 1.44M Nov 13 11:58:27 localhost kernel: FDC 0 is a post-1991 82077 Nov 13 12:13:10 localhost -- MARK -- Nov 13 12:23:22 localhost logger: Hell0 root 4 0.0 0.0 0 0 ? S 11:50 0:00 [kswapd] root 5 0.0 0.0 0 0 ? S 11:50 0:00 [bdflush] root 6 0.0 0.0 0 0 ? S 11:50 0:00 [kupdated] root 99 0.0 0.0 0 0 ? S 11:50 0:00 [kjournald] root 121 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 122 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 123 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 124 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 479 0.0 0.0 1384 436 ? S<s 11:52 0:00 udevd |
#logger -t kernel Hell0
Nov 13 11:53:10 localhost kernel: pci_hotplug: PCI Hot Plug PCI Core version: 0. 5 Nov 13 11:53:12 localhost lpd[1281]: restarted Nov 13 11:53:16 localhost kernel: apm: BIOS version 1.2 Flags 0x07 (Driver versi on 1.16) Nov 13 11:58:27 localhost kernel: inserting floppy driver for 2.4.27-2-686 Nov 13 11:58:27 localhost kernel: Floppy drive(s): fd0 is 1.44M Nov 13 11:58:27 localhost kernel: FDC 0 is a post-1991 82077 Nov 13 12:13:10 localhost -- MARK -- Nov 13 12:23:22 localhost logger: Hell0 Nov 13 12:23:53 localhost kernel: Hell0 [root@linux2:root]# logger -t kernel Privet, eto root 4 0.0 0.0 0 0 ? S 11:50 0:00 [kswapd] root 5 0.0 0.0 0 0 ? S 11:50 0:00 [bdflush] root 6 0.0 0.0 0 0 ? S 11:50 0:00 [kupdated] root 99 0.0 0.0 0 0 ? S 11:50 0:00 [kjournald] root 121 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 122 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 123 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 124 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 479 0.0 0.0 1384 436 ? S<s 11:52 0:00 udevd |
#tail /var/log/messages
Nov 13 11:53:10 localhost kernel: pci_hotplug: PCI Hot Plug PCI Core version: 0.5 Nov 13 11:53:10 localhost kernel: pci_hotplug: PCI Hot Plug PCI Core version: 0.5 Nov 13 11:53:12 localhost lpd[1281]: restarted Nov 13 11:53:16 localhost kernel: apm: BIOS version 1.2 Flags 0x07 (Driver version 1.16) Nov 13 11:58:27 localhost kernel: inserting floppy driver for 2.4.27-2-686 Nov 13 11:58:27 localhost kernel: Floppy drive(s): fd0 is 1.44M Nov 13 11:58:27 localhost kernel: FDC 0 is a post-1991 82077 Nov 13 12:13:10 localhost -- MARK -- Nov 13 12:23:22 localhost logger: Hell0 Nov 13 12:23:53 localhost kernel: Hell0 |
#logger -t kernel Privet, eto ya tvoe yadro
5 Nov 13 11:53:12 localhost lpd[1281]: restarted Nov 13 11:53:16 localhost kernel: apm: BIOS version 1.2 Flags 0x07 (Driver versi on 1.16) Nov 13 11:58:27 localhost kernel: inserting floppy driver for 2.4.27-2-686 Nov 13 11:58:27 localhost kernel: Floppy drive(s): fd0 is 1.44M Nov 13 11:58:27 localhost kernel: FDC 0 is a post-1991 82077 Nov 13 12:13:10 localhost -- MARK -- Nov 13 12:23:22 localhost logger: Hell0 Nov 13 12:23:53 localhost kernel: Hell0 Nov 13 12:24:03 localhost kernel: Privet, eto ya tvoe yadro [root@linux2:root]# logger -t kernel -p Privet, eto ya tvoe yadro root 4 0.0 0.0 0 0 ? S 11:50 0:00 [kswapd] root 5 0.0 0.0 0 0 ? S 11:50 0:00 [bdflush] root 6 0.0 0.0 0 0 ? S 11:50 0:00 [kupdated] root 99 0.0 0.0 0 0 ? S 11:50 0:00 [kjournald] root 121 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 122 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 123 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 124 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 479 0.0 0.0 1384 436 ? S<s 11:52 0:00 udevd |
#tail /var/log/messages
Nov 13 11:53:10 localhost kernel: pci_hotplug: PCI Hot Plug PCI Core version: 0.5 Nov 13 11:53:12 localhost lpd[1281]: restarted Nov 13 11:53:16 localhost kernel: apm: BIOS version 1.2 Flags 0x07 (Driver version 1.16) Nov 13 11:58:27 localhost kernel: inserting floppy driver for 2.4.27-2-686 Nov 13 11:58:27 localhost kernel: Floppy drive(s): fd0 is 1.44M Nov 13 11:58:27 localhost kernel: FDC 0 is a post-1991 82077 Nov 13 12:13:10 localhost -- MARK -- Nov 13 12:23:22 localhost logger: Hell0 Nov 13 12:23:53 localhost kernel: Hell0 Nov 13 12:24:03 localhost kernel: Privet, eto ya tvoe yadro |
#logger -t kernel -p kern.4 Privet, eto ya tvoe yadro
Nov 13 11:53:12 localhost lpd[1281]: restarted Nov 13 11:53:16 localhost kernel: apm: BIOS version 1.2 Flags 0x07 (Driver versi on 1.16) Nov 13 11:58:27 localhost kernel: inserting floppy driver for 2.4.27-2-686 Nov 13 11:58:27 localhost kernel: Floppy drive(s): fd0 is 1.44M Nov 13 11:58:27 localhost kernel: FDC 0 is a post-1991 82077 Nov 13 12:13:10 localhost -- MARK -- Nov 13 12:23:22 localhost logger: Hell0 Nov 13 12:23:53 localhost kernel: Hell0 Nov 13 12:24:03 localhost kernel: Privet, eto ya tvoe yadro [root@linux2:root]# logger -t kernel -p kern.4 Privet, eto ya tvoe yadro [root@linux2:root]# tai root 4 0.0 0.0 0 0 ? S 11:50 0:00 [kswapd] root 5 0.0 0.0 0 0 ? S 11:50 0:00 [bdflush] root 6 0.0 0.0 0 0 ? S 11:50 0:00 [kupdated] root 99 0.0 0.0 0 0 ? S 11:50 0:00 [kjournald] root 121 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 122 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 123 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 124 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 479 0.0 0.0 1384 436 ? S<s 11:52 0:00 udevd |
#tail /var/log/kern.log
Nov 13 12:24:03 localhost kernel: Privet, eto ya tvoe yadro [root@linux2:root]# tail /var/log/kern.log Nov 13 11:53:10 localhost kernel: pci_hotplug: PCI Hot Plug PCI Core version: 0.5 Nov 13 11:53:10 localhost kernel: shpchp: acpi_shpchprm:get_device PCI ROOT HID fail=0x1001 Nov 13 11:53:10 localhost kernel: pci_hotplug: PCI Hot Plug PCI Core version: 0.5 Nov 13 11:53:10 localhost kernel: pciehp: acpi_pciehprm:get_device PCI ROOT HID fail=0x1001 Nov 13 11:53:10 localhost kernel: i810_rng: RNG not detected Nov 13 11:53:10 localhost kernel: hw_random: RNG not detected Nov 13 11:53:16 localhost kernel: apm: BIOS version 1.2 Flags 0x07 (Driver version 1.16) Nov 13 11:58:27 localhost kernel: inserting floppy driver for 2.4.27-2-686 Nov 13 11:58:27 localhost kernel: Floppy drive(s): fd0 is 1.44M Nov 13 11:58:27 localhost kernel: FDC 0 is a post-1991 82077 root 4 0.0 0.0 0 0 ? S 11:50 0:00 [kswapd] root 5 0.0 0.0 0 0 ? S 11:50 0:00 [bdflush] root 6 0.0 0.0 0 0 ? S 11:50 0:00 [kupdated] root 99 0.0 0.0 0 0 ? S 11:50 0:00 [kjournald] root 121 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 122 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 123 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 124 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 479 0.0 0.0 1384 436 ? S<s 11:52 0:00 udevd |
#tail /var/log/messages
Nov 13 11:53:10 localhost kernel: pci_hotplug: PCI Hot Plug PCI Core version: 0.5 Nov 13 11:53:12 localhost lpd[1281]: restarted Nov 13 11:53:16 localhost kernel: apm: BIOS version 1.2 Flags 0x07 (Driver version 1.16) Nov 13 11:58:27 localhost kernel: inserting floppy driver for 2.4.27-2-686 Nov 13 11:58:27 localhost kernel: Floppy drive(s): fd0 is 1.44M Nov 13 11:58:27 localhost kernel: FDC 0 is a post-1991 82077 Nov 13 12:13:10 localhost -- MARK -- Nov 13 12:23:22 localhost logger: Hell0 Nov 13 12:23:53 localhost kernel: Hell0 Nov 13 12:24:03 localhost kernel: Privet, eto ya tvoe yadro |
#logger -t kernel -p kern.4 Privet, eto opyat ya tvoe yadro
5 Nov 13 11:53:12 localhost lpd[1281]: restarted Nov 13 11:53:16 localhost kernel: apm: BIOS version 1.2 Flags 0x07 (Driver versi on 1.16) Nov 13 11:58:27 localhost kernel: inserting floppy driver for 2.4.27-2-686 Nov 13 11:58:27 localhost kernel: Floppy drive(s): fd0 is 1.44M Nov 13 11:58:27 localhost kernel: FDC 0 is a post-1991 82077 Nov 13 12:13:10 localhost -- MARK -- Nov 13 12:23:22 localhost logger: Hell0 Nov 13 12:23:53 localhost kernel: Hell0 Nov 13 12:24:03 localhost kernel: Privet, eto ya tvoe yadro root 4 0.0 0.0 0 0 ? S 11:50 0:00 [kswapd] root 5 0.0 0.0 0 0 ? S 11:50 0:00 [bdflush] root 6 0.0 0.0 0 0 ? S 11:50 0:00 [kupdated] root 99 0.0 0.0 0 0 ? S 11:50 0:00 [kjournald] root 121 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 122 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 123 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 124 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 479 0.0 0.0 1384 436 ? S<s 11:52 0:00 udevd |
#tail /var/log/kern.log
Nov 13 11:53:10 localhost kernel: pci_hotplug: PCI Hot Plug PCI Core version: 0.5 Nov 13 11:53:10 localhost kernel: shpchp: acpi_shpchprm:get_device PCI ROOT HID fail=0x1001 Nov 13 11:53:10 localhost kernel: pci_hotplug: PCI Hot Plug PCI Core version: 0.5 Nov 13 11:53:10 localhost kernel: pciehp: acpi_pciehprm:get_device PCI ROOT HID fail=0x1001 Nov 13 11:53:10 localhost kernel: i810_rng: RNG not detected Nov 13 11:53:10 localhost kernel: hw_random: RNG not detected Nov 13 11:53:16 localhost kernel: apm: BIOS version 1.2 Flags 0x07 (Driver version 1.16) Nov 13 11:58:27 localhost kernel: inserting floppy driver for 2.4.27-2-686 Nov 13 11:58:27 localhost kernel: Floppy drive(s): fd0 is 1.44M Nov 13 11:58:27 localhost kernel: FDC 0 is a post-1991 82077 |
#tail /var/log/messages
Nov 13 11:53:16 localhost kernel: apm: BIOS version 1.2 Flags 0x07 (Driver version 1.16) Nov 13 11:58:27 localhost kernel: inserting floppy driver for 2.4.27-2-686 Nov 13 11:58:27 localhost kernel: Floppy drive(s): fd0 is 1.44M Nov 13 11:58:27 localhost kernel: FDC 0 is a post-1991 82077 Nov 13 12:13:10 localhost -- MARK -- Nov 13 12:23:22 localhost logger: Hell0 Nov 13 12:23:53 localhost kernel: Hell0 Nov 13 12:24:03 localhost kernel: Privet, eto ya tvoe yadro Nov 13 12:24:20 localhost kernel: Privet, eto ya tvoe yadro Nov 13 12:24:43 localhost kernel: Privet, eto opyat ya tvoe yadro |
#logger -t kernel -p kern.0 Privet, eto opyat ya tvoe yadro
5 Nov 13 11:53:12 localhost lpd[1281]: restarted Nov 13 11:53:16 localhost kernel: apm: BIOS version 1.2 Flags 0x07 (Driver versi on 1.16) Nov 13 11:58:27 localhost kernel: inserting floppy driver for 2.4.27-2-686 Nov 13 11:58:27 localhost kernel: Floppy drive(s): fd0 is 1.44M Nov 13 11:58:27 localhost kernel: FDC 0 is a post-1991 82077 Nov 13 12:13:10 localhost -- MARK -- Nov 13 12:23:22 localhost logger: Hell0 Nov 13 12:23:53 localhost kernel: Hell0 Nov 13 12:24:03 localhost kernel: Privet, eto ya tvoe yadro root 4 0.0 0.0 0 0 ? S 11:50 0:00 [kswapd] root 5 0.0 0.0 0 0 ? S 11:50 0:00 [bdflush] root 6 0.0 0.0 0 0 ? S 11:50 0:00 [kupdated] root 99 0.0 0.0 0 0 ? S 11:50 0:00 [kjournald] root 121 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 122 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 123 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 124 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 479 0.0 0.0 1384 436 ? S<s 11:52 0:00 udevd |
#logger -t kernel -p kern.0 Ya obraschayus k tebe po delu
5 Nov 13 11:53:12 localhost lpd[1281]: restarted Nov 13 11:53:16 localhost kernel: apm: BIOS version 1.2 Flags 0x07 (Driver versi on 1.16) Nov 13 11:58:27 localhost kernel: inserting floppy driver for 2.4.27-2-686 Nov 13 11:58:27 localhost kernel: Floppy drive(s): fd0 is 1.44M Nov 13 11:58:27 localhost kernel: FDC 0 is a post-1991 82077 Nov 13 12:13:10 localhost -- MARK -- Nov 13 12:23:22 localhost logger: Hell0 Nov 13 12:23:53 localhost kernel: Hell0 Nov 13 12:24:03 localhost kernel: Privet, eto ya tvoe yadro root 4 0.0 0.0 0 0 ? S 11:50 0:00 [kswapd] root 5 0.0 0.0 0 0 ? S 11:50 0:00 [bdflush] root 6 0.0 0.0 0 0 ? S 11:50 0:00 [kupdated] root 99 0.0 0.0 0 0 ? S 11:50 0:00 [kjournald] root 121 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 122 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 123 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 124 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 479 0.0 0.0 1384 436 ? S<s 11:52 0:00 udevd |
#cat | logger -t kernel -p kern.0
on 1.16) Nov 13 11:58:27 localhost kernel: inserting floppy driver for 2.4.27-2-686 Nov 13 11:58:27 localhost kernel: Floppy drive(s): fd0 is 1.44M Nov 13 11:58:27 localhost kernel: FDC 0 is a post-1991 82077 Nov 13 12:13:10 localhost -- MARK -- Nov 13 12:23:22 localhost logger: Hell0 Nov 13 12:23:53 localhost kernel: Hell0 Nov 13 12:24:03 localhost kernel: Privet, eto ya tvoe yadro esli gde-to ryadom est' sys admin obyazatel'no pozovite ego ya chuvstvuyu chto nachinayu glyuchit' root 4 0.0 0.0 0 0 ? S 11:50 0:00 [kswapd] root 5 0.0 0.0 0 0 ? S 11:50 0:00 [bdflush] root 6 0.0 0.0 0 0 ? S 11:50 0:00 [kupdated] root 99 0.0 0.0 0 0 ? S 11:50 0:00 [kjournald] root 121 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 122 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 123 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 124 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 479 0.0 0.0 1384 436 ? S<s 11:52 0:00 udevd |
#tail /var/log/messages
Nov 13 11:53:16 localhost kernel: apm: BIOS version 1.2 Flags 0x07 (Driver version 1.16) Nov 13 11:58:27 localhost kernel: inserting floppy driver for 2.4.27-2-686 Nov 13 11:58:27 localhost kernel: Floppy drive(s): fd0 is 1.44M Nov 13 11:58:27 localhost kernel: FDC 0 is a post-1991 82077 Nov 13 12:13:10 localhost -- MARK -- Nov 13 12:23:22 localhost logger: Hell0 Nov 13 12:23:53 localhost kernel: Hell0 Nov 13 12:24:03 localhost kernel: Privet, eto ya tvoe yadro Nov 13 12:24:20 localhost kernel: Privet, eto ya tvoe yadro Nov 13 12:24:43 localhost kernel: Privet, eto opyat ya tvoe yadro |
#logget f
bash: logget: command not found |
#logger f
|
#tail /var/log/messages
Nov 13 11:58:27 localhost kernel: inserting floppy driver for 2.4.27-2-686 Nov 13 11:58:27 localhost kernel: Floppy drive(s): fd0 is 1.44M Nov 13 11:58:27 localhost kernel: FDC 0 is a post-1991 82077 Nov 13 12:13:10 localhost -- MARK -- Nov 13 12:23:22 localhost logger: Hell0 Nov 13 12:23:53 localhost kernel: Hell0 Nov 13 12:24:03 localhost kernel: Privet, eto ya tvoe yadro Nov 13 12:24:20 localhost kernel: Privet, eto ya tvoe yadro Nov 13 12:24:43 localhost kernel: Privet, eto opyat ya tvoe yadro Nov 13 12:26:43 localhost logger: f |
#less /etc/syslog.conf
|
#tail /var/log/messages
Nov 13 12:24:03 localhost kernel: Privet, eto ya tvoe yadro Nov 13 11:58:27 localhost kernel: inserting floppy driver for 2.4.27-2-686 Nov 13 11:58:27 localhost kernel: Floppy drive(s): fd0 is 1.44M Nov 13 11:58:27 localhost kernel: FDC 0 is a post-1991 82077 Nov 13 12:13:10 localhost -- MARK -- Nov 13 12:23:22 localhost logger: Hell0 Nov 13 12:23:53 localhost kernel: Hell0 Nov 13 12:24:03 localhost kernel: Privet, eto ya tvoe yadro Nov 13 12:24:20 localhost kernel: Privet, eto ya tvoe yadro Nov 13 12:24:43 localhost kernel: Privet, eto opyat ya tvoe yadro Nov 13 12:26:43 localhost logger: f root 4 0.0 0.0 0 0 ? S 11:50 0:00 [kswapd] root 5 0.0 0.0 0 0 ? S 11:50 0:00 [bdflush] root 6 0.0 0.0 0 0 ? S 11:50 0:00 [kupdated] root 99 0.0 0.0 0 0 ? S 11:50 0:00 [kjournald] root 121 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 122 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 123 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 124 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 479 0.0 0.0 1384 436 ? S<s 11:52 0:00 udevd |
#echo EMERG | logger -t kernel -p kern.0
5 Nov 13 11:53:12 localhost lpd[1281]: restarted Nov 13 11:53:16 localhost kernel: apm: BIOS version 1.2 Flags 0x07 (Driver versi on 1.16) Nov 13 11:58:27 localhost kernel: inserting floppy driver for 2.4.27-2-686 Nov 13 11:58:27 localhost kernel: Floppy drive(s): fd0 is 1.44M Nov 13 11:58:27 localhost kernel: FDC 0 is a post-1991 82077 Nov 13 12:13:10 localhost -- MARK -- Nov 13 12:23:22 localhost logger: Hell0 Nov 13 12:23:53 localhost kernel: Hell0 Nov 13 12:24:03 localhost kernel: Privet, eto ya tvoe yadro root 4 0.0 0.0 0 0 ? S 11:50 0:00 [kswapd] root 5 0.0 0.0 0 0 ? S 11:50 0:00 [bdflush] root 6 0.0 0.0 0 0 ? S 11:50 0:00 [kupdated] root 99 0.0 0.0 0 0 ? S 11:50 0:00 [kjournald] root 121 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 122 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 123 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 124 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 479 0.0 0.0 1384 436 ? S<s 11:52 0:00 udevd |
#tail /var/log/messages
Nov 13 11:58:27 localhost kernel: inserting floppy driver for 2.4.27-2-686 Nov 13 11:58:27 localhost kernel: Floppy drive(s): fd0 is 1.44M Nov 13 11:58:27 localhost kernel: FDC 0 is a post-1991 82077 Nov 13 12:13:10 localhost -- MARK -- Nov 13 12:23:22 localhost logger: Hell0 Nov 13 12:23:53 localhost kernel: Hell0 Nov 13 12:24:03 localhost kernel: Privet, eto ya tvoe yadro Nov 13 12:24:20 localhost kernel: Privet, eto ya tvoe yadro Nov 13 12:24:43 localhost kernel: Privet, eto opyat ya tvoe yadro Nov 13 12:26:43 localhost logger: f |
#echo EMERG | logger -t kernel -p kern.1
5 Nov 13 11:53:12 localhost lpd[1281]: restarted Nov 13 11:53:16 localhost kernel: apm: BIOS version 1.2 Flags 0x07 (Driver versi on 1.16) Nov 13 11:58:27 localhost kernel: inserting floppy driver for 2.4.27-2-686 Nov 13 11:58:27 localhost kernel: Floppy drive(s): fd0 is 1.44M Nov 13 11:58:27 localhost kernel: FDC 0 is a post-1991 82077 Nov 13 12:13:10 localhost -- MARK -- Nov 13 12:23:22 localhost logger: Hell0 Nov 13 12:23:53 localhost kernel: Hell0 Nov 13 12:24:03 localhost kernel: Privet, eto ya tvoe yadro root 4 0.0 0.0 0 0 ? S 11:50 0:00 [kswapd] root 5 0.0 0.0 0 0 ? S 11:50 0:00 [bdflush] root 6 0.0 0.0 0 0 ? S 11:50 0:00 [kupdated] root 99 0.0 0.0 0 0 ? S 11:50 0:00 [kjournald] root 121 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 122 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 123 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 124 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 479 0.0 0.0 1384 436 ? S<s 11:52 0:00 udevd |
#tail /var/log/messages
Nov 13 11:58:27 localhost kernel: inserting floppy driver for 2.4.27-2-686 Nov 13 11:58:27 localhost kernel: Floppy drive(s): fd0 is 1.44M Nov 13 11:58:27 localhost kernel: FDC 0 is a post-1991 82077 Nov 13 12:13:10 localhost -- MARK -- Nov 13 12:23:22 localhost logger: Hell0 Nov 13 12:23:53 localhost kernel: Hell0 Nov 13 12:24:03 localhost kernel: Privet, eto ya tvoe yadro Nov 13 12:24:20 localhost kernel: Privet, eto ya tvoe yadro Nov 13 12:24:43 localhost kernel: Privet, eto opyat ya tvoe yadro Nov 13 12:26:43 localhost logger: f |
#tail /var/log/kern.log
Nov 13 11:53:10 localhost kernel: pci_hotplug: PCI Hot Plug PCI Core version: 0.5 Nov 13 11:53:10 localhost kernel: shpchp: acpi_shpchprm:get_device PCI ROOT HID fail=0x1001 Nov 13 11:53:10 localhost kernel: pci_hotplug: PCI Hot Plug PCI Core version: 0.5 Nov 13 11:53:10 localhost kernel: pciehp: acpi_pciehprm:get_device PCI ROOT HID fail=0x1001 Nov 13 11:53:10 localhost kernel: i810_rng: RNG not detected Nov 13 11:53:10 localhost kernel: hw_random: RNG not detected Nov 13 11:53:16 localhost kernel: apm: BIOS version 1.2 Flags 0x07 (Driver version 1.16) Nov 13 11:58:27 localhost kernel: inserting floppy driver for 2.4.27-2-686 Nov 13 11:58:27 localhost kernel: Floppy drive(s): fd0 is 1.44M Nov 13 11:58:27 localhost kernel: FDC 0 is a post-1991 82077 |
#echo EMERG | logger -t kernel -p kern.4
5 Nov 13 11:53:12 localhost lpd[1281]: restarted Nov 13 11:53:16 localhost kernel: apm: BIOS version 1.2 Flags 0x07 (Driver versi on 1.16) Nov 13 11:58:27 localhost kernel: inserting floppy driver for 2.4.27-2-686 Nov 13 11:58:27 localhost kernel: Floppy drive(s): fd0 is 1.44M Nov 13 11:58:27 localhost kernel: FDC 0 is a post-1991 82077 Nov 13 12:13:10 localhost -- MARK -- Nov 13 12:23:22 localhost logger: Hell0 Nov 13 12:23:53 localhost kernel: Hell0 Nov 13 12:24:03 localhost kernel: Privet, eto ya tvoe yadro root 4 0.0 0.0 0 0 ? S 11:50 0:00 [kswapd] root 5 0.0 0.0 0 0 ? S 11:50 0:00 [bdflush] root 6 0.0 0.0 0 0 ? S 11:50 0:00 [kupdated] root 99 0.0 0.0 0 0 ? S 11:50 0:00 [kjournald] root 121 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 122 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 123 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 124 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 479 0.0 0.0 1384 436 ? S<s 11:52 0:00 udevd |
#tail /var/log/kern.log
Nov 13 11:53:10 localhost kernel: pci_hotplug: PCI Hot Plug PCI Core version: 0.5 Nov 13 11:53:10 localhost kernel: shpchp: acpi_shpchprm:get_device PCI ROOT HID fail=0x1001 Nov 13 11:53:10 localhost kernel: pci_hotplug: PCI Hot Plug PCI Core version: 0.5 Nov 13 11:53:10 localhost kernel: pciehp: acpi_pciehprm:get_device PCI ROOT HID fail=0x1001 Nov 13 11:53:10 localhost kernel: i810_rng: RNG not detected Nov 13 11:53:10 localhost kernel: hw_random: RNG not detected Nov 13 11:53:16 localhost kernel: apm: BIOS version 1.2 Flags 0x07 (Driver version 1.16) Nov 13 11:58:27 localhost kernel: inserting floppy driver for 2.4.27-2-686 Nov 13 11:58:27 localhost kernel: Floppy drive(s): fd0 is 1.44M Nov 13 11:58:27 localhost kernel: FDC 0 is a post-1991 82077 |
#tail /var/log/messages
Nov 13 11:58:27 localhost kernel: Floppy drive(s): fd0 is 1.44M Nov 13 11:58:27 localhost kernel: FDC 0 is a post-1991 82077 Nov 13 12:13:10 localhost -- MARK -- Nov 13 12:23:22 localhost logger: Hell0 Nov 13 12:23:53 localhost kernel: Hell0 Nov 13 12:24:03 localhost kernel: Privet, eto ya tvoe yadro Nov 13 12:24:20 localhost kernel: Privet, eto ya tvoe yadro Nov 13 12:24:43 localhost kernel: Privet, eto opyat ya tvoe yadro Nov 13 12:26:43 localhost logger: f Nov 13 12:27:49 localhost kernel: EMERG |
#vi /etc/syslog.conf
|
#tail /var/log/syslog
Nov 13 12:24:03 localhost kernel: Privet, eto ya tvoe yadro Nov 13 12:24:20 localhost kernel: Privet, eto ya tvoe yadro Nov 13 12:24:43 localhost kernel: Privet, eto opyat ya tvoe yadro Nov 13 12:25:41 localhost kernel: Privet, eto opyat ya tvoe yadro Nov 13 12:25:58 localhost kernel: Ya obraschayus k tebe po delu Nov 13 12:26:13 localhost kernel: esli gde-to ryadom est' sys admin Nov 13 12:26:23 localhost kernel: obyazatel'no pozovite ego Nov 13 12:26:34 localhost kernel: ya chuvstvuyu chto nachinayu glyuchit' Nov 13 12:26:43 localhost logger: f Nov 13 12:27:26 localhost kernel: EMERG Nov 13 12:27:49 localhost last message repeated 2 times root 4 0.0 0.0 0 0 ? S 11:50 0:00 [kswapd] root 5 0.0 0.0 0 0 ? S 11:50 0:00 [bdflush] root 6 0.0 0.0 0 0 ? S 11:50 0:00 [kupdated] root 99 0.0 0.0 0 0 ? S 11:50 0:00 [kjournald] root 121 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 122 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 123 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 124 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 479 0.0 0.0 1384 436 ? S<s 11:52 0:00 udevd |
#apt-get install sudo
WARNING: The following packages cannot be authenticated! sudo Install these packages without verification [y/N]? Y Get: 1 http://debian.org.ua unstable/main sudo 1.6.8p12-4 [162kB] Fetched 162kB in 1s (146kB/s) (Reading database ... 69388 files and directories currently installed.) Preparing to replace sudo 1.6.8p7-1.4 (using .../sudo_1.6.8p12-4_i386.deb) ... Unpacking replacement sudo ... Setting up sudo (1.6.8p12-4) ... Installing new version of config file /etc/init.d/sudo ... root 4 0.0 0.0 0 0 ? S 11:50 0:00 [kswapd] root 5 0.0 0.0 0 0 ? S 11:50 0:00 [bdflush] root 6 0.0 0.0 0 0 ? S 11:50 0:00 [kupdated] root 99 0.0 0.0 0 0 ? S 11:50 0:00 [kjournald] root 121 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 122 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 123 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 124 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 479 0.0 0.0 1384 436 ? S<s 11:52 0:00 udevd |
#vi /etc/sudoers
15a16,18 > > user ALL=(ALL) ALL > |
#su - user
l3-agent is already running: pid=2248; pidfile=/home/user/.lilalo/l3-agent.pid |
$sudo cat /etc/shadow
list:*:13464:0:99999:7::: irc:*:13464:0:99999:7::: gnats:*:13464:0:99999:7::: nobody:*:13464:0:99999:7::: Debian-exim:!:13464:0:99999:7::: user:$1$sF9y6FPO$Xcu7BvHcoQsf4t.B55KLV.:13464:0:99999:7::: messagebus:!:13465:0:99999:7::: identd:!:13465:0:99999:7::: hal:!:13465:0:99999:7::: sshd:!:13465:0:99999:7::: gdm:!:13465:0:99999:7::: root 4 0.0 0.0 0 0 ? S 11:50 0:00 [kswapd] root 5 0.0 0.0 0 0 ? S 11:50 0:00 [bdflush] root 6 0.0 0.0 0 0 ? S 11:50 0:00 [kupdated] root 99 0.0 0.0 0 0 ? S 11:50 0:00 [kjournald] root 121 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 122 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 123 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 124 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 479 0.0 0.0 1384 436 ? S<s 11:52 0:00 udevd |
$exit
exit |
#tail /var/log/messages
Nov 13 12:24:03 localhost kernel: Privet, eto ya tvoe yadro Nov 13 11:58:27 localhost kernel: Floppy drive(s): fd0 is 1.44M Nov 13 11:58:27 localhost kernel: FDC 0 is a post-1991 82077 Nov 13 12:13:10 localhost -- MARK -- Nov 13 12:23:22 localhost logger: Hell0 Nov 13 12:23:53 localhost kernel: Hell0 Nov 13 12:24:03 localhost kernel: Privet, eto ya tvoe yadro Nov 13 12:24:20 localhost kernel: Privet, eto ya tvoe yadro Nov 13 12:24:43 localhost kernel: Privet, eto opyat ya tvoe yadro Nov 13 12:26:43 localhost logger: f Nov 13 12:27:49 localhost kernel: EMERG root 4 0.0 0.0 0 0 ? S 11:50 0:00 [kswapd] root 5 0.0 0.0 0 0 ? S 11:50 0:00 [bdflush] root 6 0.0 0.0 0 0 ? S 11:50 0:00 [kupdated] root 99 0.0 0.0 0 0 ? S 11:50 0:00 [kjournald] root 121 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 122 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 123 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 124 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 479 0.0 0.0 1384 436 ? S<s 11:52 0:00 udevd |
#tail /var/log/auth.log
Nov 13 12:13:36 localhost su[2159]: (pam_unix) session opened for user root by (uid=1000) Nov 13 12:13:42 localhost sshd[2160]: Accepted keyboard-interactive/pam for user from 192.168.15.202 port 32845 ssh2 Nov 13 12:13:42 localhost sshd[2243]: (pam_unix) session opened for user user by (uid=0) Nov 13 12:13:52 localhost su[2303]: + pts/7 user:root Nov 13 12:13:52 localhost su[2303]: (pam_unix) session opened for user root by (uid=1000) Nov 13 12:17:01 localhost CRON[2626]: (pam_unix) session opened for user root by (uid=0) Nov 13 12:17:01 localhost CRON[2626]: (pam_unix) session closed for user root Nov 13 12:31:27 localhost su[3019]: + pts/10 root:user Nov 13 12:31:27 localhost su[3019]: (pam_unix) session opened for user user by (uid=0) Nov 13 12:31:36 localhost sudo: user : TTY=pts/11 ; PWD=/home/user ; USER=root ; COMMAND=/bin/cat /etc/shadow |
#vi /etc/syslog.conf
9a10,11 > *.* @192.168.15.1 > |
#netstat -lnp | grep 514
5 Nov 13 11:53:12 localhost lpd[1281]: restarted Nov 13 11:53:16 localhost kernel: apm: BIOS version 1.2 Flags 0x07 (Driver versi on 1.16) Nov 13 11:58:27 localhost kernel: inserting floppy driver for 2.4.27-2-686 Nov 13 11:58:27 localhost kernel: Floppy drive(s): fd0 is 1.44M Nov 13 11:58:27 localhost kernel: FDC 0 is a post-1991 82077 Nov 13 12:13:10 localhost -- MARK -- Nov 13 12:23:22 localhost logger: Hell0 Nov 13 12:23:53 localhost kernel: Hell0 Nov 13 12:24:03 localhost kernel: Privet, eto ya tvoe yadro root 4 0.0 0.0 0 0 ? S 11:50 0:00 [kswapd] root 5 0.0 0.0 0 0 ? S 11:50 0:00 [bdflush] root 6 0.0 0.0 0 0 ? S 11:50 0:00 [kupdated] root 99 0.0 0.0 0 0 ? S 11:50 0:00 [kjournald] root 121 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 122 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 123 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 124 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 479 0.0 0.0 1384 436 ? S<s 11:52 0:00 udevd |
#ps aux | grep syslog
Nov 13 11:53:16 localhost kernel: apm: BIOS version 1.2 Flags 0x07 (Driver versi on 1.16) Nov 13 11:58:27 localhost kernel: inserting floppy driver for 2.4.27-2-686 Nov 13 11:58:27 localhost kernel: Floppy drive(s): fd0 is 1.44M Nov 13 11:58:27 localhost kernel: FDC 0 is a post-1991 82077 Nov 13 12:13:10 localhost -- MARK -- Nov 13 12:23:22 localhost logger: Hell0 Nov 13 12:23:53 localhost kernel: Hell0 Nov 13 12:24:03 localhost kernel: Privet, eto ya tvoe yadro root 1219 0.0 0.1 2156 824 ? Ss 11:53 0:00 /sbin/syslogd root 3140 0.0 0.1 1760 584 pts/10 R+ 12:34 0:00 grep syslog root 4 0.0 0.0 0 0 ? S 11:50 0:00 [kswapd] root 5 0.0 0.0 0 0 ? S 11:50 0:00 [bdflush] root 6 0.0 0.0 0 0 ? S 11:50 0:00 [kupdated] root 99 0.0 0.0 0 0 ? S 11:50 0:00 [kjournald] root 121 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 122 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 123 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 124 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 479 0.0 0.0 1384 436 ? S<s 11:52 0:00 udevd |
#ps waux | grep syslog
root 1219 0.0 0.1 2156 824 ? Ss 11:53 0:00 /sbin/syslogd root 3147 0.0 0.1 1760 584 pts/10 R+ 12:34 0:00 grep syslog |
#vi /etc/default/
|
#vi /etc/init.d/sysklogd
|
#/etc/init.d/sysklogd restart
Nov 13 11:53:12 localhost lpd[1281]: restarted Nov 13 11:53:16 localhost kernel: apm: BIOS version 1.2 Flags 0x07 (Driver versi on 1.16) Nov 13 11:58:27 localhost kernel: inserting floppy driver for 2.4.27-2-686 Nov 13 11:58:27 localhost kernel: Floppy drive(s): fd0 is 1.44M Nov 13 11:58:27 localhost kernel: FDC 0 is a post-1991 82077 Nov 13 12:13:10 localhost -- MARK -- Nov 13 12:23:22 localhost logger: Hell0 Nov 13 12:23:53 localhost kernel: Hell0 Nov 13 12:24:03 localhost kernel: Privet, eto ya tvoe yadro Restarting system log daemon: syslogd. root 4 0.0 0.0 0 0 ? S 11:50 0:00 [kswapd] root 5 0.0 0.0 0 0 ? S 11:50 0:00 [bdflush] root 6 0.0 0.0 0 0 ? S 11:50 0:00 [kupdated] root 99 0.0 0.0 0 0 ? S 11:50 0:00 [kjournald] root 121 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 122 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 123 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 124 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 479 0.0 0.0 1384 436 ? S<s 11:52 0:00 udevd |
#netstat -lnp | grep 514
Nov 13 11:53:12 localhost lpd[1281]: restarted Nov 13 11:53:16 localhost kernel: apm: BIOS version 1.2 Flags 0x07 (Driver versi on 1.16) Nov 13 11:58:27 localhost kernel: inserting floppy driver for 2.4.27-2-686 Nov 13 11:58:27 localhost kernel: Floppy drive(s): fd0 is 1.44M Nov 13 11:58:27 localhost kernel: FDC 0 is a post-1991 82077 Nov 13 12:13:10 localhost -- MARK -- Nov 13 12:23:22 localhost logger: Hell0 Nov 13 12:23:53 localhost kernel: Hell0 Nov 13 12:24:03 localhost kernel: Privet, eto ya tvoe yadro udp 0 0 0.0.0.0:514 0.0.0.0:* 3173/syslogd root 4 0.0 0.0 0 0 ? S 11:50 0:00 [kswapd] root 5 0.0 0.0 0 0 ? S 11:50 0:00 [bdflush] root 6 0.0 0.0 0 0 ? S 11:50 0:00 [kupdated] root 99 0.0 0.0 0 0 ? S 11:50 0:00 [kjournald] root 121 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 122 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 123 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 124 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 479 0.0 0.0 1384 436 ? S<s 11:52 0:00 udevd |
#less /etc/syslogd.conf
|
#less /etc/syslog.conf
|
#logger Hello
5 Nov 13 11:53:12 localhost lpd[1281]: restarted Nov 13 11:53:16 localhost kernel: apm: BIOS version 1.2 Flags 0x07 (Driver versi on 1.16) Nov 13 11:58:27 localhost kernel: inserting floppy driver for 2.4.27-2-686 Nov 13 11:58:27 localhost kernel: Floppy drive(s): fd0 is 1.44M Nov 13 11:58:27 localhost kernel: FDC 0 is a post-1991 82077 Nov 13 12:13:10 localhost -- MARK -- Nov 13 12:23:22 localhost logger: Hell0 Nov 13 12:23:53 localhost kernel: Hell0 Nov 13 12:24:03 localhost kernel: Privet, eto ya tvoe yadro root 4 0.0 0.0 0 0 ? S 11:50 0:00 [kswapd] root 5 0.0 0.0 0 0 ? S 11:50 0:00 [bdflush] root 6 0.0 0.0 0 0 ? S 11:50 0:00 [kupdated] root 99 0.0 0.0 0 0 ? S 11:50 0:00 [kjournald] root 121 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 122 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 123 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 124 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 479 0.0 0.0 1384 436 ? S<s 11:52 0:00 udevd |
#tail -f /var/log/messages
Nov 13 12:23:22 localhost logger: Hell0 Nov 13 12:23:53 localhost kernel: Hell0 Nov 13 12:24:03 localhost kernel: Privet, eto ya tvoe yadro Nov 13 12:24:20 localhost kernel: Privet, eto ya tvoe yadro Nov 13 12:24:43 localhost kernel: Privet, eto opyat ya tvoe yadro Nov 13 12:26:43 localhost logger: f Nov 13 12:27:49 localhost kernel: EMERG Nov 13 12:34:53 localhost exiting on signal 15 Nov 13 12:34:54 localhost syslogd 1.4.1#17: restart (remote reception). Nov 13 12:38:04 localhost logger: Hello root 4 0.0 0.0 0 0 ? S 11:50 0:00 [kswapd] root 5 0.0 0.0 0 0 ? S 11:50 0:00 [bdflush] root 6 0.0 0.0 0 0 ? S 11:50 0:00 [kupdated] root 99 0.0 0.0 0 0 ? S 11:50 0:00 [kjournald] root 121 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 122 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 123 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 124 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 479 0.0 0.0 1384 436 ? S<s 11:52 0:00 udevd |
#man logger
|
#netstat -lnp | grep 514
Nov 13 11:53:12 localhost lpd[1281]: restarted Nov 13 11:53:16 localhost kernel: apm: BIOS version 1.2 Flags 0x07 (Driver versi on 1.16) Nov 13 11:58:27 localhost kernel: inserting floppy driver for 2.4.27-2-686 Nov 13 11:58:27 localhost kernel: Floppy drive(s): fd0 is 1.44M Nov 13 11:58:27 localhost kernel: FDC 0 is a post-1991 82077 Nov 13 12:13:10 localhost -- MARK -- Nov 13 12:23:22 localhost logger: Hell0 Nov 13 12:23:53 localhost kernel: Hell0 Nov 13 12:24:03 localhost kernel: Privet, eto ya tvoe yadro udp 0 0 0.0.0.0:514 0.0.0.0:* 3173/syslogd root 4 0.0 0.0 0 0 ? S 11:50 0:00 [kswapd] root 5 0.0 0.0 0 0 ? S 11:50 0:00 [bdflush] root 6 0.0 0.0 0 0 ? S 11:50 0:00 [kupdated] root 99 0.0 0.0 0 0 ? S 11:50 0:00 [kjournald] root 121 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 122 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 123 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 124 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 479 0.0 0.0 1384 436 ? S<s 11:52 0:00 udevd |
#tail -f /var/log/syslog
Nov 13 12:25:58 localhost kernel: Ya obraschayus k tebe po delu Nov 13 12:26:13 localhost kernel: esli gde-to ryadom est' sys admin Nov 13 12:26:23 localhost kernel: obyazatel'no pozovite ego Nov 13 12:26:34 localhost kernel: ya chuvstvuyu chto nachinayu glyuchit' Nov 13 12:26:43 localhost logger: f Nov 13 12:27:26 localhost kernel: EMERG Nov 13 12:27:49 localhost last message repeated 2 times Nov 13 12:34:53 localhost exiting on signal 15 Nov 13 12:34:54 localhost syslogd 1.4.1#17: restart (remote reception). Nov 13 12:38:04 localhost logger: Hello root 4 0.0 0.0 0 0 ? S 11:50 0:00 [kswapd] root 5 0.0 0.0 0 0 ? S 11:50 0:00 [bdflush] root 6 0.0 0.0 0 0 ? S 11:50 0:00 [kupdated] root 99 0.0 0.0 0 0 ? S 11:50 0:00 [kjournald] root 121 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 122 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 123 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 124 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 479 0.0 0.0 1384 436 ? S<s 11:52 0:00 udevd |
#apt-get install netcat
Need to get 66.8kB of archives. After unpacking 233kB of additional disk space will be used. WARNING: The following packages cannot be authenticated! netcat Install these packages without verification [y/N]? Y Get: 1 http://debian.org.ua unstable/main netcat 1.10-32 [66.8kB] Fetched 66.8kB in 1s (52.4kB/s) Selecting previously deselected package netcat. (Reading database ... 69392 files and directories currently installed.) Unpacking netcat (from .../netcat_1.10-32_i386.deb) ... Setting up netcat (1.10-32) ... root 4 0.0 0.0 0 0 ? S 11:50 0:00 [kswapd] root 5 0.0 0.0 0 0 ? S 11:50 0:00 [bdflush] root 6 0.0 0.0 0 0 ? S 11:50 0:00 [kupdated] root 99 0.0 0.0 0 0 ? S 11:50 0:00 [kjournald] root 121 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 122 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 123 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 124 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 479 0.0 0.0 1384 436 ? S<s 11:52 0:00 udevd |
#apt-get install cowsay
Need to get 18.0kB of archives. After unpacking 274kB of additional disk space will be used. WARNING: The following packages cannot be authenticated! cowsay Install these packages without verification [y/N]? Y Get: 1 http://debian.org.ua unstable/main cowsay 3.03-8 [18.0kB] Fetched 18.0kB in 0s (104kB/s) Selecting previously deselected package cowsay. (Reading database ... 69431 files and directories currently installed.) Unpacking cowsay (from .../archives/cowsay_3.03-8_all.deb) ... Setting up cowsay (3.03-8) ... root 4 0.0 0.0 0 0 ? S 11:50 0:00 [kswapd] root 5 0.0 0.0 0 0 ? S 11:50 0:00 [bdflush] root 6 0.0 0.0 0 0 ? S 11:50 0:00 [kupdated] root 99 0.0 0.0 0 0 ? S 11:50 0:00 [kjournald] root 121 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 122 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 123 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 124 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 479 0.0 0.0 1384 436 ? S<s 11:52 0:00 udevd |
#dpkg -L cowsay
/usr/share/cowsay/cows/stimpy.cow /usr/share/cowsay/cows/mech-and-cow.cow /usr/share/cowsay/cows/supermilker.cow /usr/share/cowsay/cows/mutilated.cow /usr/share/cowsay/cows/milk.cow /usr/share/cowsay/cows/moose.cow /usr/share/cowsay/cows/apt.cow /usr/bin /usr/bin/cowsay /usr/share/man/man1/cowthink.1.gz /usr/bin/cowthink root 4 0.0 0.0 0 0 ? S 11:50 0:00 [kswapd] root 5 0.0 0.0 0 0 ? S 11:50 0:00 [bdflush] root 6 0.0 0.0 0 0 ? S 11:50 0:00 [kupdated] root 99 0.0 0.0 0 0 ? S 11:50 0:00 [kjournald] root 121 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 122 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 123 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 124 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 479 0.0 0.0 1384 436 ? S<s 11:52 0:00 udevd |
#dpkg -L cowsay | grep dra
Nov 13 11:53:16 localhost kernel: apm: BIOS version 1.2 Flags 0x07 (Driver versi on 1.16) Nov 13 11:58:27 localhost kernel: inserting floppy driver for 2.4.27-2-686 Nov 13 11:58:27 localhost kernel: Floppy drive(s): fd0 is 1.44M Nov 13 11:58:27 localhost kernel: FDC 0 is a post-1991 82077 Nov 13 12:13:10 localhost -- MARK -- Nov 13 12:23:22 localhost logger: Hell0 Nov 13 12:23:53 localhost kernel: Hell0 Nov 13 12:24:03 localhost kernel: Privet, eto ya tvoe yadro /usr/share/cowsay/cows/dragon-and-cow.cow /usr/share/cowsay/cows/dragon.cow root 4 0.0 0.0 0 0 ? S 11:50 0:00 [kswapd] root 5 0.0 0.0 0 0 ? S 11:50 0:00 [bdflush] root 6 0.0 0.0 0 0 ? S 11:50 0:00 [kupdated] root 99 0.0 0.0 0 0 ? S 11:50 0:00 [kjournald] root 121 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 122 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 123 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 124 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 479 0.0 0.0 1384 436 ? S<s 11:52 0:00 udevd |
#echo Linux Rulez | cowsay -f /usr/share/cowsay/cows/dragon.
Nov 13 11:53:16 localhost kernel: apm: BIOS version 1.2 Flags 0x07 (Driver versi on 1.16) Nov 13 11:58:27 localhost kernel: inserting floppy driver for 2.4.27-2-686 Nov 13 11:58:27 localhost kernel: Floppy drive(s): fd0 is 1.44M Nov 13 11:58:27 localhost kernel: FDC 0 is a post-1991 82077 Nov 13 12:13:10 localhost -- MARK -- Nov 13 12:23:22 localhost logger: Hell0 Nov 13 12:23:53 localhost kernel: Hell0 Nov 13 12:24:03 localhost kernel: Privet, eto ya tvoe yadro ow | nc -u 192.168.15.1 514 root 4 0.0 0.0 0 0 ? S 11:50 0:00 [kswapd] root 5 0.0 0.0 0 0 ? S 11:50 0:00 [bdflush] root 6 0.0 0.0 0 0 ? S 11:50 0:00 [kupdated] root 99 0.0 0.0 0 0 ? S 11:50 0:00 [kjournald] root 121 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 122 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 123 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 124 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 479 0.0 0.0 1384 436 ? S<s 11:52 0:00 udevd |
#apt-get install syslog-ng
(Reading database ... 69491 files and directories currently installed.) Removing klogd ... Stopping kernel log daemon: klogd. Removing sysklogd ... Stopping system log daemon: syslogd. Selecting previously deselected package syslog-ng. (Reading database ... 69468 files and directories currently installed.) Unpacking syslog-ng (from .../syslog-ng_2.0rc3-2_i386.deb) ... Setting up syslog-ng (2.0rc3-2) ... Starting system logging: syslog-ng. root 4 0.0 0.0 0 0 ? S 11:50 0:00 [kswapd] root 5 0.0 0.0 0 0 ? S 11:50 0:00 [bdflush] root 6 0.0 0.0 0 0 ? S 11:50 0:00 [kupdated] root 99 0.0 0.0 0 0 ? S 11:50 0:00 [kjournald] root 121 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 122 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 123 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 124 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 479 0.0 0.0 1384 436 ? S<s 11:52 0:00 udevd |
#strings `which syslog-ng` |grep etc
ungetc _IO_getc getcwd -f <fname>, --cfgfile=<fname> Set config file name, default=/etc/syslog-ng/syslog-ng.conf log_fetch_limit /etc/xdg /etc/eventlog.conf /etc/syslog-ng/syslog-ng.conf |
#cd /etc/syslog-ng
[root@linux2:root]# strings `which syslog-ng` |grep etc ungetc _IO_getc getcwd -f <fname>, --cfgfile=<fname> Set config file name, default=/etc/syslog-ng/syslog-ng.conf log_fetch_limit /etc/xdg /etc/eventlog.conf /etc/syslog-ng/syslog-ng.conf [root@linux2:root]# cd /etc/syslog-ng [root@linux2:syslog-ng]# vi su |
#vi syslon.ng.conf
|
#ls -la
[root@linux2:syslog-ng]# ls -la total 15 drwxr-xr-x 2 root root 1024 2006-11-13 12:47 . drwxr-xr-x 91 root root 4096 2006-11-13 12:44 .. -rw-r--r-- 1 root root 9588 2006-10-25 23:24 syslog-ng.conf [root@linux2:syslog-ng]# ls syslog-ng.conf [root@linux2:syslog-ng]# cd /etc/syslog-ng total 15 drwxr-xr-x 2 root root 1024 2006-11-13 12:47 . drwxr-xr-x 91 root root 4096 2006-11-13 12:44 .. -rw-r--r-- 1 root root 9588 2006-10-25 23:24 syslog-ng.conf |
#ls
syslog-ng.conf |
#vi syslog.ng.conf
|
#vi syslog-ng.conf
|
#vi syslog-ng.conf
|
#ps waux | grep vim
root 3939 0.0 0.1 1760 584 pts/7 R+ 12:56 0:00 grep vim |
#ps waux | grep vi
root 3686 0.0 0.4 4072 2548 pts/10 S+ 12:53 0:00 /usr/bin/vi syslog-ng.conf root 3946 0.0 0.1 1760 584 pts/7 R+ 12:56 0:00 grep vi |
#kill 3686
|
#kill -9 3686
bash: kill: (3686) - No such process |
#ps waux | grep vi
root 3973 0.0 0.1 1760 584 pts/7 R+ 12:56 0:00 grep vi |
#vi /etc/syslog-ng.conf
|
#cd /etc/
|
list:*:13464:0:99999:7::: irc:*:13464:0:99999:7::: gnats:*:13464:0:99999:7::: nobody:*:13464:0:99999:7::: Debian-exim:!:13464:0:99999:7::: user:$1$sF9y6FPO$Xcu7BvHcoQsf4t.B55KLV.:13464:0:99999:7::: messagebus:!:13465:0:99999:7::: identd:!:13465:0:99999:7::: hal:!:13465:0:99999:7::: sshd:!:13465:0:99999:7::: gdm:!:13465:0:99999:7::: root 4 0.0 0.0 0 0 ? S 11:50 0:00 [kswapd] root 5 0.0 0.0 0 0 ? S 11:50 0:00 [bdflush] root 6 0.0 0.0 0 0 ? S 11:50 0:00 [kupdated] root 99 0.0 0.0 0 0 ? S 11:50 0:00 [kjournald] root 121 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 122 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 123 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 124 0.0 0.0 0 0 ? S 11:51 0:00 [kjournald] root 479 0.0 0.0 1384 436 ? S<s 11:52 0:00 udevd
Время первой команды журнала | 11:21:21 2006-11-13 | |||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
Время последней команды журнала | 12:57:25 2006-11-13 | |||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
Количество командных строк в журнале | 100 | |||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
Процент команд с ненулевым кодом завершения, % | 9.00 | |||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
Процент синтаксически неверно набранных команд, % | 2.00 | |||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
Суммарное время работы с терминалом *, час | 1.04 | |||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
Количество командных строк в единицу времени, команда/мин | 1.60 | |||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
Частота использования команд |
|
В журнал автоматически попадают все команды, данные в любом терминале системы.
Для того чтобы убедиться, что журнал на текущем терминале ведётся, и команды записываются, дайте команду w. В поле WHAT, соответствующем текущему терминалу, должна быть указана программа script.
Команды, при наборе которых были допущены синтаксические ошибки, выводятся перечёркнутым текстом:
$ l s-l bash: l: command not found |
Если код завершения команды равен нулю, команда была выполнена без ошибок. Команды, код завершения которых отличен от нуля, выделяются цветом.
$ test 5 -lt 4 |
Команды, ход выполнения которых был прерван пользователем, выделяются цветом.
$ find / -name abc find: /home/devi-orig/.gnome2: Keine Berechtigung find: /home/devi-orig/.gnome2_private: Keine Berechtigung find: /home/devi-orig/.nautilus/metafiles: Keine Berechtigung find: /home/devi-orig/.metacity: Keine Berechtigung find: /home/devi-orig/.inkscape: Keine Berechtigung ^C |
Команды, выполненные с привилегиями суперпользователя, выделяются слева красной чертой.
# id uid=0(root) gid=0(root) Gruppen=0(root) |
Изменения, внесённые в текстовый файл с помощью редактора, запоминаются и показываются в журнале в формате ed. Строки, начинающиеся символом "<", удалены, а строки, начинающиеся символом ">" -- добавлены.
$ vi ~/.bashrc
|
Для того чтобы изменить файл в соответствии с показанными в диффшоте изменениями, можно воспользоваться командой patch. Нужно скопировать изменения, запустить программу patch, указав в качестве её аргумента файл, к которому применяются изменения, и всавить скопированный текст:
$ patch ~/.bashrc |
Для того чтобы получить краткую справочную информацию о команде, нужно подвести к ней мышь. Во всплывающей подсказке появится краткое описание команды.
Если справочная информация о команде есть, команда выделяется голубым фоном, например: vi. Если справочная информация отсутствует, команда выделяется розовым фоном, например: notepad.exe. Справочная информация может отсутствовать в том случае, если (1) команда введена неверно; (2) если распознавание команды LiLaLo выполнено неверно; (3) если информация о команде неизвестна LiLaLo. Последнее возможно для редких команд.
Большие, в особенности многострочные, всплывающие подсказки лучше всего показываются браузерами KDE Konqueror, Apple Safari и Microsoft Internet Explorer. В браузерах Mozilla и Firefox они отображаются не полностью, а вместо перевода строки выводится специальный символ.
Время ввода команды, показанное в журнале, соответствует времени начала ввода командной строки, которое равно тому моменту, когда на терминале появилось приглашение интерпретатора
Имя терминала, на котором была введена команда, показано в специальном блоке. Этот блок показывается только в том случае, если терминал текущей команды отличается от терминала предыдущей.
Вывод не интересующих вас в настоящий момент элементов журнала, таких как время, имя терминала и других, можно отключить. Для этого нужно воспользоваться формой управления журналом вверху страницы.
Небольшие комментарии к командам можно вставлять прямо из командной строки. Комментарий вводится прямо в командную строку, после символов #^ или #v. Символы ^ и v показывают направление выбора команды, к которой относится комментарий: ^ - к предыдущей, v - к следующей. Например, если в командной строке было введено:
$ whoami
user
$ #^ Интересно, кто я?в журнале это будет выглядеть так:
$ whoami
user
Интересно, кто я? |
Если комментарий содержит несколько строк, его можно вставить в журнал следующим образом:
$ whoami
user
$ cat > /dev/null #^ Интересно, кто я?
Программа whoami выводит имя пользователя, под которым мы зарегистрировались в системе. - Она не может ответить на вопрос о нашем назначении в этом мире.В журнале это будет выглядеть так:
$ whoami user
|
Комментарии, не относящиеся непосредственно ни к какой из команд, добавляются точно таким же способом, только вместо симолов #^ или #v нужно использовать символы #=
1 2 3 4Группы команд, выполненных на разных терминалах, разделяются специальной линией. Под этой линией в правом углу показано имя терминала, на котором выполнялись команды. Для того чтобы посмотреть команды только одного сенса, нужно щёкнуть по этому названию.
LiLaLo (L3) расшифровывается как Live Lab Log.
Программа разработана для повышения эффективности обучения Unix/Linux-системам.
(c) Игорь Чубин, 2004-2008