[Extension] utmpx and LOGIN_FAILURE

Ed Schouten ed at 80386.nl
Sat May 1 23:58:47 UTC 2010


* Peter Jeremy <peterjeremy at acm.org> wrote:
> On 2010-May-01 22:32:44 +0200, Ed Schouten <ed at 80386.nl> wrote:
> >* Alexander Leidinger <Alexander at Leidinger.net> wrote:
> >> Does this default to on or off or is this always on? If the later: some
> >> kind of a switch (no matter what the default is) would be highly
> >> desired.
> >
> >What about adding a switch to last(1) to (un)hide the entries?
> 
> That doesn't cover the DoS potential of logging this data in the
> firstplace.

So how is this covered right now? As far as I know, all of our existing
login services write messages to /var/log/*.

-- 
 Ed Schouten <ed at 80386.nl>
 WWW: http://80386.nl/
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 196 bytes
Desc: not available
Url : http://lists.freebsd.org/pipermail/freebsd-arch/attachments/20100501/70904c72/attachment.pgp


More information about the freebsd-arch mailing list