Root access loggin

John Fitzgerald jjfitzgerald at gmail.com
Tue Jul 24 17:28:42 UTC 2007


You can patch bash to log commands to syslog/remote/etc:

http://64.233.169.104/search?q=cache:y0SGTs8EoTYJ:www.linux.it/~carlo/somehacks/bup/bash-2.05b-syslog_udp01.patch+bash+perassi&hl=en&gl=us&strip=1

I set this up on a few machines and it's not too hard. You can also
run a cron job to see when/who is logged in (w + netstat, for
instance) and then send an email/text message, so he can't login and
get rid of the logger without you knowing it. Or for the more
elaborate setup:

http://www.honeynet.org/tools/sebek


On 7/24/07, Ian Lord <mailing-lists at msdi.ca> wrote:
> Hi,
>
>
>
> A Zend technician asked me to have a root access on one of my box to
> troubleshoot something wrong in Zend Platform installation that doesn't work
> on Freebsd.
>
>
>
> He will need root access naturally to install and debug remotely.
>
>
>
> Is there a way to log all the commands he will type and send them in a
> logfile ?
>
>
>
> Or is there a better solution than granting him root access from ssh ?
>
>
>
> Thanks
>
>
>
> _______________________________________________
> freebsd-questions at freebsd.org mailing list
> http://lists.freebsd.org/mailman/listinfo/freebsd-questions
> To unsubscribe, send any mail to "freebsd-questions-unsubscribe at freebsd.org"
>


More information about the freebsd-questions mailing list