FreeBSD 4.7 Syslogs

Matt "Cyber Dog" LaPlante webmaster at cyberdogtech.com
Sat May 15 13:40:27 PDT 2004


/var/run/dmesg.boot:
++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Copyright (c) 1992-2002 The FreeBSD Project.
Copyright (c) 1979, 1980, 1983, 1986, 1988, 1989, 1991, 1992, 1993, 1994
	The Regents of the University of California. All rights reserved.
FreeBSD 4.7-RELEASE-p15 #2: Sat Sep 27 11:04:10 EDT 2003
Timecounter "i8254"  frequency 1193182 Hz
CPU: Pentium III/Pentium III Xeon/Celeron (1004.52-MHz 686-class CPU)
  Origin = "GenuineIntel"  Id = 0x68a  Stepping = 10
 
Features=0x383fbff<FPU,VME,DE,PSE,TSC,MSR,PAE,MCE,CX8,APIC,SEP,MTRR,PGE,MCA,
CMOV,PAT,PSE36,MMX,FXSR,SSE>
real memory  = 2147467264 (2097136K bytes)
config> di sn0
No such device: sn0
Invalid command or syntax.  Type `?' for help.
config> di lnc0
No such device: lnc0
Invalid command or syntax.  Type `?' for help.
config> di ie0
No such device: ie0
Invalid command or syntax.  Type `?' for help.
config> di fe0
No such device: fe0
Invalid command or syntax.  Type `?' for help.
config> di ed0
No such device: ed0
Invalid command or syntax.  Type `?' for help.
config> di cs0
No such device: cs0
Invalid command or syntax.  Type `?' for help.
config> q
avail memory = 2087624704 (2038696K bytes)
Programming 24 pins in IOAPIC #0
IOAPIC #0 intpin 2 -> irq 0
FreeBSD/SMP: Multiprocessor motherboard
 cpu0 (BSP): apic id:  3, version: 0x00040011, at 0xfee00000
 cpu1 (AP):  apic id:  0, version: 0x00040011, at 0xfee00000
 io0 (APIC): apic id:  2, version: 0x00178011, at 0xfec00000
Preloaded elf kernel "kernel" at 0xc03d1000.
Preloaded userconfig_script "/boot/kernel.conf" at 0xc03d109c.
netsmb_dev: loaded
Pentium Pro MTRR support enabled
md0: Malloc disk
Using $PIR table, 7 entries at 0xc00f12d0
npx0: <math processor> on motherboard
npx0: INT 16 interface
pcib0: <Host to PCI bridge> on motherboard
IOAPIC #0 intpin 18 -> irq 2
IOAPIC #0 intpin 16 -> irq 4
IOAPIC #0 intpin 19 -> irq 10
pci0: <PCI bus> on pcib0
agp0: <VIA 82C691 (Apollo Pro) host to PCI bridge> mem 0xfc000000-0xfdffffff
at device 0.0 on pci0
pcib2: <VIA 82C598MVP (Apollo MVP3) PCI-PCI (AGP) bridge> at device 1.0 on
pci0
pci1: <PCI bus> on pcib2
isab0: <VIA 82C686 PCI-ISA bridge> at device 4.0 on pci0
isa0: <ISA bus> on isab0
atapci0: <VIA 82C686 ATA100 controller> port 0xd800-0xd80f at device 4.1 on
pci0
ata0: at 0x1f0 irq 14 on atapci0
ata1: at 0x170 irq 15 on atapci0
pci0: <VIA 83C572 USB controller> at 4.2 irq 2
pci0: <VIA 83C572 USB controller> at 4.3 irq 2
pci0: <unknown card> (vendor=0x1106, dev=0x3057) at 4.4
xl0: <3Com 3c905C-TX Fast Etherlink XL> port 0xb800-0xb87f mem
0xef000000-0xef00007f irq 2 at device 10.0 on pci0
xl0: Ethernet address: 00:04:75:72:64:cb
miibus0: <MII bus> on xl0
ukphy0: <Generic IEEE 802.3u media interface> on miibus0
ukphy0:  10baseT, 10baseT-FDX, 100baseTX, 100baseTX-FDX, auto
pci0: <S3 Savage 4 graphics accelerator> at 12.0 irq 4
twe0: <3ware Storage Controller> port 0xb400-0xb40f mem
0xed800000-0xedffffff,0xee000000-0xee00000f irq 10 at device 13.0 on pci0
twe0: 4 ports, Firmware FE7X 1.03.09.027, BIOS BE7X 1.07.02.002
pcib1: <Host to PCI bridge> on motherboard
pci2: <PCI bus> on pcib1
orm0: <Option ROMs> at iomem 0xc0000-0xcafff,0xcc000-0xccfff on isa0
fdc0: <NEC 72065B or clone> at port 0x3f0-0x3f5,0x3f7 irq 6 drq 2 on isa0
fdc0: FIFO enabled, 8 bytes threshold
fd0: <1440-KB 3.5" drive> on fdc0 drive 0
atkbdc0: <Keyboard controller (i8042)> at port 0x60,0x64 on isa0
atkbd0: <AT Keyboard> flags 0x1 irq 1 on atkbdc0
kbd0 at atkbd0
psm0: <PS/2 Mouse> irq 12 on atkbdc0
psm0: model IntelliMouse, device ID 3
vga0: <Generic ISA VGA> at port 0x3c0-0x3df iomem 0xa0000-0xbffff on isa0
sc0: <System console> at flags 0x100 on isa0
sc0: VGA <16 virtual consoles, flags=0x300>
sio0: configured irq 4 not in bitmap of probed irqs 0
sio0 at port 0x3f8-0x3ff irq 4 flags 0x10 on isa0
sio0: type 8250
sio1: configured irq 3 not in bitmap of probed irqs 0
ppc0: parallel port not found.
APIC_IO: Testing 8254 interrupt delivery
APIC_IO: routing 8254 via IOAPIC #0 intpin 2
SMP: AP CPU #1 Launched!
ad0: 39266MB <IC35L040AVER07-0> [79780/16/63] at ata0-master UDMA100
ad2: 117246MB <Maxtor 4G120J6> [238216/16/63] at ata1-master UDMA100
twed0: <TwinStor, Normal> on twe0
twed0: 95395MB (195369520 sectors)
twe0: command interrupt
Mounting root from ufs:/dev/ad0s1a
++++++++++++++++++++++++++++++++++++++++++++++++++++++++
/etc/rc.conf:
++++++++++++++++++++++++++++++++++++++++++++++++++++++++
# -- sysinstall generated deltas -- # Wed Apr  3 17:02:40 2002
# Created: Wed Apr  3 17:02:40 2002
# Enable network daemons for user convenience.
# Please make all changes to this file, not to /etc/defaults/rc.conf.
# This file now contains just the overrides from /etc/defaults/rc.conf.
kern_securelevel_enable="NO"
linux_enable="YES"
moused_type="auto"
nfs_reserved_port_only="YES"
saver="logo"
sshd_enable="YES"

# use ssh from openssh port instead of default

sshd_program="/usr/local/sbin/sshd"
sshd_flags="-u16"


usbd_enable="NO"
sendmail_enable="NO"

# make sure portmap/rpc shit is disabled

portmap_enable="NO"
nfs_client_enable="NO"
nfs_server_enable="NO"
nis_client_enable="NO"
nis_server_enable="NO"

# -- sysinstall generated deltas -- # Fri Sep 20 10:00:37 2002
keyrate="fast"
++++++++++++++++++++++++++++++++++++++++++++++++++++++++
/etc/syslog.conf:
++++++++++++++++++++++++++++++++++++++++++++++++++++++++
# $FreeBSD: src/etc/syslog.conf,v 1.13.2.2 2001/02/26 09:26:11 phk Exp $
#
#	Spaces are NOT valid field separators in this file.
#	Consult the syslog.conf(5) manpage.

# Purchasing database syslog

local7.crit;local7.err;local7.notice            /var/log/purchasing

# Postgres syslog

local0.*					/var/log/postgres
local2.*                                        /var/log/qmail/smtpd.log
local3.*                                        /var/log/qmail/send
local4.*                                        /var/log/qmail/masterlog


!local0.*;*.err;kern.debug;auth.notice;mail.crit		/dev/console
!local0.*;!local7.*;*.notice;kern.debug;lpr.info;mail.crit;news.err
/var/log/messages
authpriv.*					/var/log/authpriv
security.*					/var/log/security
mail.info					/var/log/maillog
lpr.info					/var/log/lpd-errs
cron.*						/var/log/cron
!local0.*;*.notice;news.err			/dev/console
!local0.*;*.alert				/dev/console
*.emerg						*


# uncomment this to log all writes to /dev/console to /var/log/console.log

console.info					/var/log/console.log
++++++++++++++++++++++++++++++++++++++++++++++++++++++++
/etc/newsylog.conf:
++++++++++++++++++++++++++++++++++++++++++++++++++++++++
# configuration file for newsyslog
# $FreeBSD: src/etc/newsyslog.conf,v 1.25.2.8 2001/12/14 11:50:42 rwatson
Exp $
#
# Note: some sites will want to select more restrictive protections than the
# defaults.  In particular, it may be desirable to switch many of the 644
# entries to 640 or 600.  For example, some sites will consider the
# contents of maillog, messages, and lpd-errs to be confidential.  In the
# future, these defaults may change to more conservative ones.
#
# logfilename          [owner:group]    mode count size when [ZJB]
[/pid_file] [sig_num]
/var/log/cron				600  3	   100  *     Z
/var/log/amd.log			644  7	   100  *     Z
/var/log/kerberos.log			600  7	   100  *     Z
/var/log/lpd-errs			640  7	   100  *     Z
/var/log/maillog			600  14    *    @T00  Z
/var/log/sendmail.st			640  10    *    168   B
/var/log/messages			600  5	   100  *     Z
/var/log/all.log			600  7     *    @T00  Z
/var/log/slip.log			600  3	   100  *     Z
/var/log/ppp.log			600  3	   100	*     Z
/var/log/security			600  10    100  *     Z
/var/log/wtmp				644  3	   *	@01T05 B
/var/log/daily.log			640  7	   *	@T00  Z
/var/log/weekly.log			640  5	   1	$W6D0 Z
/var/log/monthly.log			640  12	   *	$M1D0 Z
/var/log/console.log			600  5     100	*     Z

# This is all custom stuff

/var/log/postgres			600  50	   250	*     Z
/var/log/log.nmbd			600  50    250  *     Z
/var/log/log.smbd			600  50    250  *     Z
#/var/log/uvscan			600  50    250  *     Z
/var/log/qmail/current			600  100   250  *     Z
/var/log/qmail/smtpd/current		600  100   250  *     Z
/var/log/local_rsync			600  10    500  *     Z
/var/log/purchasing			600  50    500  *     Z
++++++++++++++++++++++++++++++++++++++++++++++++++++++++
/etc/crontab:
++++++++++++++++++++++++++++++++++++++++++++++++++++++++
# /etc/crontab - root's crontab for FreeBSD
#
# $FreeBSD: src/etc/crontab,v 1.21.2.3 2000/12/08 10:56:07 obrien Exp $
#
SHELL=/bin/sh
PATH=/etc:/bin:/sbin:/usr/bin:/usr/sbin
HOME=/var/log
#
#minute	hour	mday	month	wday	who	command
#
*/5	*	*	*	*	root	/usr/libexec/atrun
#
# rotate log files every hour, if necessary
0	*	*	*	*	root	newsyslog
#
# do daily/weekly/monthly maintenance
1	3	*	*	*	root	periodic daily
15	4	*	*	6	root	periodic weekly
30	5	1	*	*	root	periodic monthly
#
# time zone change adjustment for wall cmos clock,
# does nothing, if you have UTC cmos clock.
# See adjkerntz(8) for details.
1,31	0-5	*	*	*	root	adjkerntz -a

# update kav stuff with zipfiles

00	21	*	*	*	root
/root/scripts/virus/kav_update

# rsync

00	21	*	*	*	root
/root/scripts/backup/daily_rsync

# update mrtg every 5 minutes

0,5,10,15,20,25,30,35,40,45,50,55	*	*	*	*	root
/usr/local/mrtg/bin/mrtg /usr/local/mrtg/mrtg.cfg

++++++++++++++++++++++++++++++++++++++++++++++++++++++++
ls -l /var/log/*:
++++++++++++++++++++++++++++++++++++++++++++++++++++++++
-rw-r-x---  1 root  wheel      695 Jul  9  2002 /var/log/3w-aenlog.txt
-rw-r-x---  1 root  wheel      647 Jan 29  2003 /var/log/adduser
-rw-r-x---  1 root  wheel   484877 May  7  2003 /var/log/authpriv
-rw-------  1 root  wheel       61 May 12 15:37 /var/log/console.log
-rw-r-x---  1 root  wheel     5751 May 12 15:37 /var/log/console.log.0.gz
-rw-------  1 root  wheel     4612 May  6  2003 /var/log/console.log.1.gz
-rw-------  1 root  wheel     7955 May  6  2003 /var/log/console.log.2.gz
-rw-------  1 root  wheel     4710 May  4  2003 /var/log/console.log.3.gz
-rw-------  1 root  wheel     8716 May  3  2003 /var/log/console.log.4.gz
-rw-------  1 root  wheel     9406 May  1  2003 /var/log/console.log.5.gz
-rw-------  1 root  wheel       61 May 12 15:36 /var/log/cron
-rw-r-x---  1 root  wheel     5039 May 12 15:36 /var/log/cron.0.gz
-rw-------  1 root  wheel     6921 May  6  2003 /var/log/cron.1.gz
-rw-------  1 root  wheel     6738 May  4  2003 /var/log/cron.2.gz
-rw-------  1 root  wheel     6829 May  3  2003 /var/log/cron.3.gz
-rw-------  1 root  wheel    31335 May 15 03:06 /var/log/dmesg.today
-rw-------  1 root  wheel    31335 May 14 03:06 /var/log/dmesg.yesterday
lrwxr-xr-x  1 root  wheel       22 May  1  2002 /var/log/httpd ->
/usr/local/apache/logs
-rw-r-x---  1 root  wheel  1635786 May 15 13:08 /var/log/kavscan.rpt
-rw-r-x---  1 root  wheel    31080 May 15 16:18 /var/log/lastlog
-rw-------  1 root  wheel       61 May 12 15:38 /var/log/local_rsync
-rw-r-x---  1 root  wheel    38054 May 12 15:38 /var/log/local_rsync.0.gz
-rw-------  1 root  wheel   201766 Jun 12  2002 /var/log/local_rsync.1.gz
-rw-------  1 root  wheel   365750 Jun  8  2002 /var/log/local_rsync.10.gz
-rw-------  1 root  wheel   453883 Jun 11  2002 /var/log/local_rsync.2.gz
-rw-------  1 root  wheel   188191 Jun 11  2002 /var/log/local_rsync.3.gz
-rw-------  1 root  wheel   206870 Jun 11  2002 /var/log/local_rsync.4.gz
-rw-------  1 root  wheel   452912 Jun 10  2002 /var/log/local_rsync.5.gz
-rw-------  1 root  wheel   194575 Jun 10  2002 /var/log/local_rsync.6.gz
-rw-------  1 root  wheel   204531 Jun 10  2002 /var/log/local_rsync.7.gz
-rw-------  1 root  wheel   448883 Jun  9  2002 /var/log/local_rsync.8.gz
-rw-------  1 root  wheel   224066 Jun  9  2002 /var/log/local_rsync.9.gz
-rw-r-x---  1 root  wheel        0 Apr 24  2002 /var/log/log.cicero
-rw-------  1 root  wheel     7709 May 15 13:08 /var/log/log.nmbd
-rw-r-x---  1 root  wheel     7532 May 12 15:37 /var/log/log.nmbd.0.gz
-rw-------  1 root  wheel    12238 May 17  2002 /var/log/log.nmbd.1.gz
-rw-------  1 root  wheel      472 May 15 13:08 /var/log/log.smbd
-rw-r-x---  1 root  wheel     8990 May 12 15:37 /var/log/log.smbd.0.gz
-rw-------  1 root  wheel    35534 May 18  2002 /var/log/log.smbd.1.gz
-rw-------  1 root  wheel    38962 May 17  2002 /var/log/log.smbd.10.gz
-rw-------  1 root  wheel    77573 May 17  2002 /var/log/log.smbd.11.gz
-rw-------  1 root  wheel    61362 May 18  2002 /var/log/log.smbd.2.gz
-rw-------  1 root  wheel    97363 May 18  2002 /var/log/log.smbd.3.gz
-rw-------  1 root  wheel   142495 May 18  2002 /var/log/log.smbd.4.gz
-rw-------  1 root  wheel     8288 May 18  2002 /var/log/log.smbd.5.gz
-rw-------  1 root  wheel    11058 May 18  2002 /var/log/log.smbd.6.gz
-rw-------  1 root  wheel    18904 May 18  2002 /var/log/log.smbd.7.gz
-rw-------  1 root  wheel    66004 May 17  2002 /var/log/log.smbd.8.gz
-rw-------  1 root  wheel    73041 May 17  2002 /var/log/log.smbd.9.gz
-rw-r-----  1 root  wheel       61 May 12 15:36 /var/log/lpd-errs
-rw-r-x---  1 root  wheel       89 May 12 15:36 /var/log/lpd-errs.0.gz
-rw-------  1 root  wheel       63 May 15 00:00 /var/log/maillog
-rw-------  1 root  wheel      101 May 15 00:00 /var/log/maillog.0.gz
-rw-------  1 root  wheel      100 May 14 00:00 /var/log/maillog.1.gz
-rw-------  1 root  wheel      101 May  6 00:00 /var/log/maillog.10.gz
-rw-------  1 root  wheel      101 May  5 00:00 /var/log/maillog.11.gz
-rw-------  1 root  wheel      100 May  4 00:00 /var/log/maillog.12.gz
-rw-------  1 root  wheel      100 May  3 00:00 /var/log/maillog.13.gz
-rw-------  1 root  wheel      101 May  2 00:00 /var/log/maillog.14.gz
-rw-------  1 root  wheel      106 May 13 00:00 /var/log/maillog.2.gz
-rw-------  1 root  wheel      106 May 12 15:36 /var/log/maillog.3.gz
-rw-------  1 root  wheel      101 May 12 00:00 /var/log/maillog.4.gz
-rw-------  1 root  wheel      100 May 11 00:00 /var/log/maillog.5.gz
-rw-------  1 root  wheel      102 May 10 00:00 /var/log/maillog.6.gz
-rw-------  1 root  wheel      101 May  9 00:00 /var/log/maillog.7.gz
-rw-------  1 root  wheel      105 May  8 00:00 /var/log/maillog.8.gz
-rw-------  1 root  wheel      104 May  7 00:00 /var/log/maillog.9.gz
-rw-------  1 root  wheel       61 May 12 15:36 /var/log/messages
-rw-r-x---  1 root  wheel       94 May 12 15:36 /var/log/messages.0.gz
-rw-------  1 root  wheel     6944 May  7  2003 /var/log/messages.1.gz
-rw-------  1 root  wheel     6699 May  4  2003 /var/log/messages.2.gz
-rw-------  1 root  wheel     8964 May  1  2003 /var/log/messages.3.gz
-rw-------  1 root  wheel     9271 Apr 26  2003 /var/log/messages.4.gz
-rw-------  1 root  wheel    10329 Apr 18  2003 /var/log/messages.5.gz
-rw-------  1 root  wheel      204 Nov 15  2003 /var/log/mount.today
-rw-------  1 root  wheel      271 Oct 23  2003 /var/log/mount.yesterday
-rw-------  1 root  wheel     7689 May 15 13:08 /var/log/postgres
-rw-------  1 root  wheel    13895 May 12 15:37 /var/log/postgres.0.gz
-rw-------  1 root  wheel    16999 Mar  5 02:00 /var/log/postgres.1.gz
-rw-------  1 root  wheel    19535 Jan 12 10:00 /var/log/postgres.2.gz
-rw-------  1 root  wheel    18334 Oct 28  2003 /var/log/postgres.3.gz
-rw-------  1 root  wheel    18375 Jun 18  2003 /var/log/postgres.5.gz
-rw-------  1 root  wheel    18452 Apr 15  2003 /var/log/postgres.6.gz
-rw-------  1 root  wheel    20339 Mar 13  2003 /var/log/postgres.7.gz
-rw-------  1 root  wheel    21319 Dec 30  2002 /var/log/postgres.8.gz
-rw-------  1 root  wheel    27132 Nov 20  2002 /var/log/postgres.9.gz
-rw-------  1 root  wheel       61 May 12 15:37 /var/log/ppp.log
-rw-r-x---  1 root  wheel       88 May 12 15:37 /var/log/ppp.log.0.gz
-rw-------  1 root  wheel       61 May 12 15:38 /var/log/purchasing
-rw-r-x---  1 root  wheel      656 May 12 15:38 /var/log/purchasing.0.gz
-rw-r-x---  1 root  wheel    26683 May 12 14:09 /var/log/pw
-rw-------  1 root  wheel       61 May 12 15:37 /var/log/security
-rw-r-x---  1 root  wheel       89 May 12 15:37 /var/log/security.0.gz
-rw-------  1 root  wheel    14330 May 15 03:06 /var/log/setuid.today
-rw-------  1 root  wheel    14330 May 14 03:06 /var/log/setuid.yesterday
-rw-------  1 root  wheel       61 May 12 15:36 /var/log/slip.log
-rw-r-x---  1 root  wheel       89 May 12 15:36 /var/log/slip.log.0.gz
-rw-r-x---  1 root  wheel        0 May 29  2002 /var/log/tivoli.log
-rw-r-x---  1 root  wheel      360 Apr 10  2002 /var/log/userlog
-rw-r-x---  1 root  wheel     2805 May 29  2002 /var/log/uvscan
-rw-r--r--  1 root  wheel     2244 May 15 16:18 /var/log/wtmp
-rw-r--r--  1 root  wheel     2024 May 12 15:30 /var/log/wtmp.0
-rw-r--r--  1 root  wheel     5456 Apr 30 13:52 /var/log/wtmp.1
-rw-r--r--  1 root  wheel     7436 Mar 29 00:34 /var/log/wtmp.2
-rw-r--r--  1 root  wheel     5412 Feb 27 12:53 /var/log/wtmp.3
-rw-r-x---  1 root  wheel   348720 Apr 29 18:32 /var/log/xferlog

/var/log/cups:
total 6
drw-r-x---  2 root  wheel   512 Apr 16  2002 .
drwxr-xr-x  7 root  wheel  2560 May 15 03:06 ..

/var/log/qmail:
total 10246
drwxr-xr-x  3 qmaill  wheel      512 May 15 13:03 .
drwxr-xr-x  7 root    wheel     2560 May 15 03:06 ..
-rwxr-xr-x  1 qmaill  wheel       54 Feb 25 17:30
@40000000403d302904390824.u
-rwxr-xr-x  1 qmaill  wheel       27 Feb 25 18:30
@40000000403d30d620fc8ea4.u
-rwxr-xr-x  1 qmaill  wheel       27 Feb 25 18:33
@40000000403d30de06936efc.u
-rwxr-xr-x  1 qmaill  wheel       57 Feb 25 18:33
@40000000403d30f229e1ded4.u
-rwxr-xr-x  1 qmaill  wheel       27 Feb 25 18:34
@40000000403d35412ed7c494.u
-rw-r--r--  1 qmaill  wheel        0 Feb 25 18:52
@40000000403d36901987c634.u
-rw-------  1 root    wheel       61 May 12 15:38
@4000000040a2b02b1140a61c.u
-rw-r--r--  1 qmaill  wheel        0 May 12 19:15
@4000000040a64d6d2695e824.u
-rw-r--r--  1 qmaill  wheel        0 May 15 13:03 current
-rw-r--r--  1 qmaill  wheel       88 May 12 15:38 current.0.gz
-rwxr-xr-x  1 qmaill  wheel        0 Feb 25 17:30 lock
-rw-r--r--  1 root    wheel        0 May 12 15:10 masterlog
-rw-r--r--  1 root    wheel  8183826 May 15 16:22 send
drwxr-xr-x  2 qmaill  wheel      512 May 15 13:03 smtpd
-rw-r--r--  1 root    wheel  2237039 May 15 16:22 smtpd.log
-rw-r--r--  1 qmaill  wheel        0 May 15 13:03 state

/var/log/qmail-old:
total 874
drw-r-x---  3 qmaill  wheel    512 May  8  2003 .
drwxr-xr-x  7 root    wheel   2560 May 15 03:06 ..
-rw-rwx---  1 qmaill  wheel  98069 May  6  2003 @400000003eb7de4b17fb176c.s
-rw-rwx---  1 qmaill  wheel  98013 May  6  2003 @400000003eb818391c137254.s
-rw-rwx---  1 qmaill  wheel  98045 May  6  2003 @400000003eb84309132563dc.s
-rw-rwx---  1 qmaill  wheel  98151 May  6  2003 @400000003eb88060093dde1c.s
-rw-rwx---  1 qmaill  wheel  98027 May  7  2003 @400000003eb8b3ed391c75e4.s
-rw-rwx---  1 qmaill  wheel  98121 May  7  2003 @400000003eb8f0041cea1f5c.s
-rw-rwx---  1 qmaill  wheel  98084 May  7  2003 @400000003eb917263577957c.s
-rw-rwx---  1 qmaill  wheel  98036 May  7  2003 @400000003eb93c6b0a916fcc.s
-rw-rwx---  1 qmaill  wheel  98051 May  7  2003 @400000003eba5463364545bc.u
-rwxr--r--  1 root    wheel     76 May  8  2003 current
-rw-rwx---  1 qmaill  wheel      0 Apr 23  2002 lock
drw-rwx---  2 qmaill  wheel    512 May  7  2003 smtpd
-rw-r--r--  1 root    wheel      0 May  8  2003 state

/var/log/tivoli:
total 744
drw-r-x---  2 root  wheel     512 May 30  2002 .
drwxr-xr-x  7 root  wheel    2560 May 15 03:06 ..
-rw-r-x---  1 root  wheel      63 May 30  2002 tsm-progress.log
-rw-r-x---  1 root  wheel  691207 May 30  2002 tsm-progress.log.0.gz
-rw-r-x---  1 root  wheel   31818 May 30  2002 tsmerr.log
++++++++++++++++++++++++++++++++++++++++++++++++++++++++
ps ax:
++++++++++++++++++++++++++++++++++++++++++++++++++++++++
  PID  TT  STAT      TIME COMMAND
    0  ??  DLs    0:00.00  (swapper)
    1  ??  ILs    0:08.28 /sbin/init --
    2  ??  DL     0:00.02  (pagedaemon)
    3  ??  DL     0:00.00  (vmdaemon)
    4  ??  DL     0:00.08  (bufdaemon)
    5  ??  DL     0:00.08  (vnlru)
    6  ??  DL     0:03.01  (syncer)
   27  ??  Is     0:00.00 adjkerntz -i
   82  ??  Ss     0:00.82 /usr/sbin/syslogd -s
   89  ??  Is     0:00.00 /usr/sbin/inetd -wW
   91  ??  Ss     0:00.06 /usr/sbin/cron
   93  ??  Is     0:00.36 /usr/local/sbin/sshd -u16
  135  ??  Ss     0:00.44 /usr/local/apache/bin/httpd -DSSL
  140  ??  I      0:00.43 /usr/local/apache/bin/httpd -DSSL
  141  ??  I      0:00.32 /usr/local/apache/bin/httpd -DSSL
  142  ??  I      0:00.30 /usr/local/apache/bin/httpd -DSSL
  143  ??  I      0:00.83 /usr/local/apache/bin/httpd -DSSL
  144  ??  I      0:00.43 /usr/local/apache/bin/httpd -DSSL
  145  ??  I      0:00.76 /usr/local/apache/bin/httpd -DSSL
  146  ??  I      0:00.83 /usr/local/apache/bin/httpd -DSSL
  147  ??  I      0:00.21 /usr/local/apache/bin/httpd -DSSL
  149  ??  I      0:00.01
/usr/local/courier-imap/libexec/authlib/authdaemond.p
  150  ??  I      0:00.02
/usr/local/courier-imap/libexec/authlib/authdaemond.p
  151  ??  I      0:00.04
/usr/local/courier-imap/libexec/authlib/authdaemond.p
  152  ??  I      0:00.02
/usr/local/courier-imap/libexec/authlib/authdaemond.p
  153  ??  I      0:00.02
/usr/local/courier-imap/libexec/authlib/authdaemond.p
  155  ??  I      0:00.02
/usr/local/courier-imap/libexec/authlib/authdaemond.p
  164  ??  I      0:00.06 /usr/local/courier-imap/libexec/couriertcpd
-address=
  166  ??  I      0:00.05 /usr/local/courier-imap/libexec/logger imapd-ssl
  182  ??  I      0:00.01 /usr/local/courier-imap/libexec/couriertcpd
-address=
  184  ??  I      0:00.01 /usr/local/courier-imap/libexec/logger imapd
  191  ??  Is     0:00.01 /usr/local/sbin/kavucc
  192  ??  S      0:00.01 /usr/local/sbin/kavucc
  197  ??  Is     0:00.00 /usr/local/sbin/kavdaemon -Y
  198  ??  Is     0:00.00 /usr/local/sbin/kavdaemon -Y
  202  ??  Is     0:00.00 /usr/local/sbin/pamsmbd
  219  ??  I      0:00.05 /usr/local/courier-imap/bin/couriertls -server
-tcpd 
  220  ??  I      0:00.08 /usr/local/courier-imap/bin/imapd .Maildir
  224  ??  Is     0:00.03 /usr/local/sbin/smbd -D
  226  ??  Ss     0:00.60 /usr/local/sbin/nmbd -D
  236  ??  I      0:00.01 supervise qmail-send
  237  ??  I      0:00.01 supervise log
  238  ??  I      0:00.01 supervise qmail-smtpd
  239  ??  I      0:00.01 supervise log
  248  ??  I      0:01.65 qmail-send
  249  ??  I      0:00.00 /bin/sh ./run
  252  ??  I      0:00.01 /usr/local/bin/multilog t /var/log/qmail/smtpd
  253  ??  I      0:00.01 /usr/local/bin/multilog t /var/log/qmail
  256  ??  I      0:00.12 /usr/local/bin/tcpserver -v -R -p -l 0 -x
/etc/tcp.sm
  257  ??  I      0:00.21 /var/qmail/bin/splogger smtpd 18
  258  ??  I      0:00.76 splogger qmail 19
  259  ??  I      0:00.31 qmail-lspawn ./.Maildir/
  260  ??  I      0:00.26 qmail-rspawn
  261  ??  I      0:00.11 qmail-clean
  309  ??  S      0:15.12 /usr/local/sbin/smbd -D
  371  ??  I      0:00.20 /usr/local/apache/bin/httpd -DSSL
  389  ??  I      0:00.04 /usr/local/courier-imap/bin/couriertls -server
-tcpd 
  390  ??  I      0:00.05 /usr/local/courier-imap/bin/imapd .Maildir
  523  ??  S      0:00.06 /usr/local/courier-imap/bin/couriertls -server
-tcpd 
  524  ??  S      0:00.17 /usr/local/courier-imap/bin/imapd .Maildir
  714  ??  S      0:00.12 /usr/local/courier-imap/bin/couriertls -server
-tcpd 
  715  ??  S      0:11.34 /usr/local/courier-imap/bin/imapd .Maildir
  769  ??  S      0:00.05 /usr/local/sbin/smbd -D
  970  ??  I      0:00.03 /usr/local/sbin/smbd -D
 1052  ??  I      0:00.03 /usr/local/sbin/smbd -D
 1310  ??  S      0:04.07 /usr/local/sbin/smbd -D
 1345  ??  S      0:00.04 /usr/local/sbin/smbd -D
 1717  ??  I      0:00.04 /usr/local/sbin/smbd -D
 2884  ??  I      0:00.44 /usr/local/sbin/smbd -D
 3643  ??  I      0:00.06 /usr/local/courier-imap/bin/couriertls -server
-tcpd 
 3644  ??  I      0:00.29 /usr/local/courier-imap/bin/imapd .Maildir
 4468  ??  I      0:00.03 /usr/local/courier-imap/bin/couriertls -server
-tcpd 
 4469  ??  I      0:00.01 /usr/local/courier-imap/bin/imapd .Maildir
 4527  ??  Is     0:00.02 sshd: laplante [priv] (sshd)
 4529  ??  S      0:00.12 sshd: laplante at ttyp0 (sshd)
 4637  ??  I      0:00.02 /usr/local/sbin/smbd -D
  843  p0- S      0:00.03 syslogd -d
  847  p0- I      0:00.03 syslogd -d
 1214  p0- I      0:00.03 syslogd -dv
 4530  p0  Is     0:00.03 -bash (bash)
 4534  p0  S      0:00.05 su (bash)
 4657  p0  R+     0:00.00 ps ax
  754  v0  Is+    0:00.01 /usr/libexec/getty Pc ttyv0
  241  v1  Is+    0:00.01 /usr/libexec/getty Pc ttyv1
  242  v2  Is+    0:00.00 /usr/libexec/getty Pc ttyv2
  243  v3  Is+    0:00.01 /usr/libexec/getty Pc ttyv3
  244  v4  Is+    0:00.01 /usr/libexec/getty Pc ttyv4
  245  v5  Is+    0:00.00 /usr/libexec/getty Pc ttyv5
  246  v6  Is+    0:00.01 /usr/libexec/getty Pc ttyv6
  247  v7  Is+    0:00.00 /usr/libexec/getty Pc ttyv7
  214 con- I      0:00.07 /usr/local/pgsql/bin/postmaster (postgres)
  221 con- I      0:00.00 postmaster: stats buffer process    (postgres)
  222 con- I      0:00.00 postmaster: stats collector process    (postgres)
  231 con- S      0:00.39 /usr/local/bin/svscan /var/service
  232 con- I      0:00.00 /usr/local/bin/readproctitle service errors:
........
++++++++++++++++++++++++++++++++++++++++++++++++++++++++

-----Original Message-----
From: owner-freebsd-questions at freebsd.org
[mailto:owner-freebsd-questions at freebsd.org] On Behalf Of JJB
Sent: Saturday, May 15, 2004 4:04 PM
To: Matt "Cyber Dog" LaPlante; 'Matthew Seaman';
freebsd-questions at FreeBSD.org
Subject: RE: FreeBSD 4.7 Syslogs

Well since you are new to FBSD and since the syslogd -d commands
shows that you do not have logging specified in /etc/syslog.conf for
the messages file. You just do not know what you are looking at. Who
ever was sysadmin before you probably  commented it out for what
ever reason.

By the way I tried using the logger command on my 4.9 system and it
did not write any messages at all. So it is no help in debugging
this problem. I read the man logger info and as usual the man page
is useless. Who ever writes those must work real hard at writing
sentences that convey no meanings.

To verify the conclusion that no logging is enabled for messages
file, first do  halt command, power off box, wait 1 minute, power
back on to boot system, then, post the complete contents of these
files.
/var/run/dmesg.boot
/etc/rc.conf
/etc/syslog.conf
/etc/newsylog.conf
/etc/crontab
The output of this command  ls -l /var/log/*   to see all the
details about your log files.
The output of this command  ps ax


-----Original Message-----
From: owner-freebsd-questions at freebsd.org
[mailto:owner-freebsd-questions at freebsd.org]On Behalf Of Matt "Cyber
Dog" LaPlante
Sent: Saturday, May 15, 2004 1:34 PM
To: 'Matthew Seaman'; freebsd-questions at FreeBSD.org
Subject: RE: FreeBSD 4.7 Syslogs

I tried the logger command, but it didn't reach the messages file
(which is
still empty).  Here is the output from the syslogd -d command:

syslogd: bind: Address already in use
logmsg: pri 53, flags 4, from , msg syslogd: bind: Address already
in use
Logging to CONSOLE /dev/console
syslogd: bind: Address already in use
logmsg: pri 53, flags 4, from , msg syslogd: bind: Address already
in use
Logging to CONSOLE /dev/console
can't open /dev/klog (16)
off & running....
init
cfline("local7.crit;local7.err;local7.notice
/var/log/purchasing", f, "*", "*")
cfline("local0.*
/var/log/postgres",
f, "*", "*")
cfline("local2.*
/var/log/qmail/smtpd.log", f, "*", "*")
cfline("local3.*
/var/log/qmail/send", f, "*", "*")
cfline("local4.*
/var/log/qmail/masterlog", f, "*", "*")
cfline("authpriv.*
/var/log/authpriv",
f, "local0", "*")
cfline("security.*
/var/log/security",
f, "local0", "*")
cfline("mail.info
/var/log/maillog",
f, "local0", "*")
cfline("lpr.info
/var/log/lpd-errs",
f, "local0", "*")
cfline("cron.*
/var/log/cron", f,
"local0", "*")
cfline("*.emerg                                         *", f,
"local0",
"*")
cfline("console.info
/var/log/console.log", f, "local0", "*")
X X X X X X X X X X X X X X X X X X X X X X X 5 X FILE:
/var/log/purchasing
X X X X X X X X X X X X X X X X 8 X X X X X X X X FILE:
/var/log/postgres
X X X X X X X X X X X X X X X X X X 8 X X X X X X FILE:
/var/log/qmail/smtpd.log
X X X X X X X X X X X X X X X X X X X 8 X X X X X FILE:
/var/log/qmail/send
X X X X X X X X X X X X X X X X X X X X 8 X X X X FILE:
/var/log/qmail/masterlog
X X X X X X X X X X 8 X X X X X X X X X X X X X X FILE:
/var/log/authpriv
(local0)
X X X X X X X X X X X X X 8 X X X X X X X X X X X FILE:
/var/log/security
(local0)
X X 6 X X X X X X X X X X X X X X X X X X X X X X FILE:
/var/log/maillog
(local0)
X X X X X X 6 X X X X X X X X X X X X X X X X X X FILE:
/var/log/lpd-errs
(local0)
X X X X X X X X X 8 X X X X X X X X X X X X X X X FILE:
/var/log/cron
(local0)
0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 X WALL:  (local0)
X X X X X X X X X X X X X X 6 X X X X X X X X X X FILE:
/var/log/console.log
(local0)
logmsg: pri 56, flags 4, from compname, msg syslogd: restart
syslogd: restarted


-----Original Message-----
From: owner-freebsd-questions at freebsd.org
[mailto:owner-freebsd-questions at freebsd.org] On Behalf Of Matthew
Seaman
Sent: Saturday, May 15, 2004 4:56 AM
To: Matt Cyber Dog LaPlante
Cc: freebsd-questions at freebsd.org
Subject: Re: FreeBSD 4.7 Syslogs

On Sat, May 15, 2004 at 01:51:40AM -0400, Matt Cyber Dog LaPlante
wrote:
> I've inherited a FreeBSD 4.7 server as part of a system
administration
job.
>  Recently I noticed that the syslog files had stopped collecting
data.
 This
> includes /var/log/messages and /var/log/console among others.  Up
until
some
> time last week, they'd been full of data, but after some unknown
event,
all
> data collection stopped.  I did not build/configure the system,
nor am I
> very fluent in the ways of BSD, so I do not know where else to
begin
looking
> for answers.  I ran the newsyslog program to regenerate all the
log files.
>  It created them, with the single line stating a new log file was
created,
> but aside from that one line they remain empty.  I tried manually
restarting
> syslogd, as well as rebooting the whole machine, neither of which
have had
> any effect.  I have not manually altered any syslog configuration
info,
and
> I basically have no idea what to try next.  I'm a relative noob
when it
> comes to FreeBSD, so I'd appreciate answers in a simple format.
Thanks in
> advance...

Hmmm... that doesn't sound good.  Can you use logger(1) to write a
test message into the log files?

    % logger -p daemon.info -t TEST "Some test message"

which should appear in /var/log/messages.  If it doesn't, look at
/etc/syslog.conf and verify that it is sensible.  Then try killing
syslogd and starting it up in debug mode:

    # syslogd -d {other syslog flags}

this will not daemonize itself or go into the background and will
print out various debugging information as log messages come in.

        Cheers,

        Matthew

--
Dr Matthew J Seaman MA, D.Phil.                       26 The
Paddocks
                                                      Savill Way
PGP: http://www.infracaninophile.co.uk/pgpkey         Marlow
Tel: +44 1628 476614                                  Bucks., SL7
1TH UK


_______________________________________________
freebsd-questions at freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-questions
To unsubscribe, send any mail to
"freebsd-questions-unsubscribe at freebsd.org"

_______________________________________________
freebsd-questions at freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-questions
To unsubscribe, send any mail to "freebsd-questions-unsubscribe at freebsd.org"




More information about the freebsd-questions mailing list