summaryrefslogtreecommitdiff
path: root/logcheck/ignore.d.workstation
diff options
context:
space:
mode:
authorJonas Smedegaard <dr@jones.dk>2003-01-01 23:45:15 +0000
committerJonas Smedegaard <dr@jones.dk>2003-01-01 23:45:15 +0000
commitbae65f57b011e083dabff47bd6f73ae072084c9b (patch)
treea81a4b5faafebcca34151841011b3f698c5cde2a /logcheck/ignore.d.workstation
parentc572cd4c8bf75204716d28653ff3d35d9f3d6075 (diff)
Misc updates to postfix and uw-imapd and samba loglines.
Diffstat (limited to 'logcheck/ignore.d.workstation')
-rw-r--r--logcheck/ignore.d.workstation/local9
1 files changed, 5 insertions, 4 deletions
diff --git a/logcheck/ignore.d.workstation/local b/logcheck/ignore.d.workstation/local
index 24819d6..8e4e3d8 100644
--- a/logcheck/ignore.d.workstation/local
+++ b/logcheck/ignore.d.workstation/local
@@ -223,7 +223,7 @@ postfix/smtpd?\[[0-9]+\]: Verified: subject_CN=[^,]+, issuer=[^,]+$
postfix/smtpd?\[[0-9]+\]: warning: (numeric|malformed) domain name in resource data of MX record for [^[:space:]]+: [^[:space:]]*$
postfix/smtpd?\[[0-9]+\]: warning: valid_hostname: (empty hostname|invalid character [0-9]+\(decimal\): [^[:space:]]+)$
postfix/smtpd\[[0-9]+\]: (lost connection|timeout) after [^ ]+ from [^[:space:]]+\[[\.0-9]+\]$
-postfix/smtpd\[[0-9]+\]: warning: Illegal address syntax from [^[:space:]\[]+\[[\.0-9]+\] in MAIL command: <[^>]+>$
+postfix/smtpd\[[0-9]+\]: warning: Illegal address syntax from [^[:space:]\[]+\[[\.0-9]+\] in (MAIL command: <[^>]+>|RCPT command: )$
postfix/smtpd\[[0-9]+\]: warning: [^[:space:]]+ sent (message header|mail content) instead of SMTP command:
postfix/smtpd\[[0-9]+\]: warning: [^[:space:]]+: address not listed for hostname [^[:space:]]+$
postfix/smtpd\[[0-9]+\]: warning: [^[:space:]]+: hostname [^[:space:]]+ verification failed: Host (name has no address|not found)$
@@ -339,10 +339,11 @@ portsentry\[[0-9]+\]: attackalert: .*
## pump
pumpd\[[0-9]+\]: SO_BINDTODEVICE eth0 \(4\) failed: Invalid argument
## samba
+smbd\[[0-9]+\]: process_local_message: unknown UDP message command code \(2de1\) - ignoring. $
smbd\[[0-9]+\]: read(_socket)?_data: recv failure for 4. Error = (No route to host|Connection reset by peer) $
-smbd\[[0-9]+\]: smb_pam_passcheck: PAM: smb_pam_auth failed - Rejecting User [[:alnum:]]+ !$
-smbd\[[0-9]+\]: yield_connection: tdb_delete for name failed with error Record does not exist\.$
-smbd\[[0-9]+\]: \[[0-9/]+ [0-9:]+, [0-9]+\] (lib/util_sock.c:read_data|passdb/pampass.c:smb_pam_passcheck|smbd/(connection.c:yield_connection|service.c:find_service))\([0-9]+\) $
+smbd\[[0-9]+\]: smb_pam_passcheck: PAM: smb_pam_auth failed - Rejecting User [[:alnum:]]+ ! $
+smbd\[[0-9]+\]: yield_connection: tdb_delete for name failed with error Record does not exist\. $
+smbd\[[0-9]+\]: \[[0-9/]+ [0-9:]+, [0-9]+\] (lib/util_sock.c:read_data|passdb/pampass.c:smb_pam_passcheck|smbd/(connection.c:yield_connection|oplock.c:process_local_message|service.c:find_service))\([0-9]+\) $
sshd\[[0-9]+\]: Failed password for [[:alnum:]]+ $
sshd\[[0-9]+\]: packet_set_maxsize: setting to 4096 $
## postfix