summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
-rw-r--r--logcheck/ignore.d.server/local56
-rw-r--r--logcheck/ignore.d.workstation/local56
-rw-r--r--logcheck/violations.ignore.d/local4
3 files changed, 54 insertions, 62 deletions
diff --git a/logcheck/ignore.d.server/local b/logcheck/ignore.d.server/local
index cdd4072..fd20c8c 100644
--- a/logcheck/ignore.d.server/local
+++ b/logcheck/ignore.d.server/local
@@ -151,36 +151,32 @@ murasaki\.usb\[[0-9]+\]: (MATCH\(audio\) -> match_flags:[[:alnum:]]+ )?vendor:[[
nagios: Auto-save of retention data completed successfully\.$
nagios: LOG ROTATION: DAILY$
### ignore.d.server/netatalk.changes
-afpd\[[0-9]+\]: CNID DB initialized using Sleepycat Software: Berkeley DB$
-afpd\[[0-9]+\]: removed [^[:space:]]+/net[\.0-9]+node[0-9]+$
-afpd\[[0-9]\]: ((dhx|cleartext|randnum/rand2num) )?login: [[:alnum:]]+$
-afpd\[[0-9]\]: (server_child\[[0-9]+\] [0-9]+ )?(done|exited 1)$
-afpd\[[0-9]\]: ASIP session:[0-9]+\([0-9]+\) from [\.:0-9]+\([0-9]+\)$
-afpd\[[0-9]\]: Connection terminated$
-afpd\[[0-9]\]: [\.[:alnum:]]+ read, [\.[:alnum:]]+ written$
-afpd\[[0-9]\]: [^[:space:]]+: (C|c)onnection timed out$
-afpd\[[0-9]\]: [^[:space:]]+: Broken pipe$
-afpd\[[0-9]\]: [^[:space:]]+: Connection reset by peer$
-afpd\[[0-9]\]: [^[:space:]]+: No route to host$
-afpd\[[0-9]\]: [^[:space:]]+: No such file or directory$
-afpd\[[0-9]\]: [^[:space:]]+: Permission denied$
-afpd\[[0-9]\]: [^[:space:]]+: child timed out$
-afpd\[[0-9]\]: afp_openfork: ad_open: File Exists$
-afpd\[[0-9]\]: asp_alrm: [0-9]+ timed out$
-afpd\[[0-9]\]: login [[:alnum:]]+ \(uid [0-9]+, gid [0-9]+\)$
-afpd\[[0-9]\]: login noauth$
-afpd\[[0-9]\]: logout [[:alnum:]]+$
-afpd\[[0-9]\]: registering [[:alnum:]]+ \(uid [0-9]+\) on [\.0-9]+ as /.+/net[\.0-9]+node[0-9]+$
-afpd\[[0-9]\]: session from [\.:0-9]+ on [\.:0-9]+$
-afpd\[[0-9]\]: uams_dhx_pam.c :PAM: PAM (Auth OK!|Success -- Success)$
-afpd\[[0-9]\]: using codepage directory: /etc/netatalk/nls/maccode\.[\.a-z0-9-]+$
-atalkd\[[0-9]+\]: [^[:space:]]+: zip gnireply from [\.0-9]+ \([^[:space:]]+\)$
-atalkd\[[0-9]+\]: [^[:space:]]+: zip ignoring gnireply$
-atalkd\[[0-9]\]: [^[:space:]]+: Network is unreachable$
-atalkd\[[0-9]\]: zip gnireply from [\.0-9]+ \([^[:space:]]+\)$
-atalkd\[[0-9]\]: zip ignoring gnireply$
-papd\[[0-9]\]: child [0-9]+ done$
-papd\[[0-9]\]: child [0-9]+ for "[^[:space:]]+" from [\.0-9]+$
+afpd\[[0-9]+\]: ((dhx|cleartext|randnum/rand2num) )?login: [[:alnum:]]+$
+afpd\[[0-9]+\]: (afp_flushfork|afp_read|getforkparms): (ad_refresh|of_find): (No such file or directory|No such process|Permission denied)$
+afpd\[[0-9]+\]: dsi_stream_read\(0\): (No such file or directory|No such process|Permission denied)$
+afpd\[[0-9]+\]: (atp_rresp|afp_die: asp_shutdown): Connection timed out$
+afpd\[[0-9]+\]: (registering [[:alnum:]]+ \(uid [0-9]+\) on [\.0-9]+ as|removed) /[^[:space:]]+/net[\.0-9]+node[0-9]+$
+afpd\[[0-9]+\]: (server_child\[[0-9]+\] [0-9]+ )?(done|exited 1)$
+afpd\[[0-9]+\]: ASIP session:[0-9]+\([0-9]+\) from [\.:0-9]+\([0-9]+\)$
+afpd\[[0-9]+\]: CNID DB initialized using Sleepycat Software: Berkeley DB( [\.0-9]+: \([^\(]+\))?$
+afpd\[[0-9]+\]: Connection terminated$
+afpd\[[0-9]+\]: [\.[:alnum:]]+ read, [\.[:alnum:]]+ written$
+afpd\[[0-9]+\]: [_[:alnum:]]+(\(-?[0-9]+\))?: stat [^:]+: (No such file or directory|Permission denied)$
+afpd\[[0-9]+\]: afp_alarm: child timed out$
+atalkd\[[0-9]+\]: as_timer sendto: Network is unreachable $
+afpd\[[0-9]+\]: asp_alrm: [0-9]+ timed out$
+afpd\[[0-9]+\]: dsi_stream_(read\(-1\)|write): Connection reset by peer$
+afpd\[[0-9]+\]: dsi_stream_read\(0\): Success$
+afpd\[[0-9]+\]: error stat'ing /[^[:space:]]+/net[\.0-9]+node[0-9]+: No such file or directory$
+afpd\[[0-9]+\]: login [[:alnum:]]+ \(uid [0-9]+, gid [0-9]+\)( AFP2\.2)?$
+afpd\[[0-9]+\]: login noauth$
+afpd\[[0-9]+\]: logout [[:alnum:]]+$
+afpd\[[0-9]+\]: session from [\.:0-9]+ on [\.:0-9]+$
+afpd\[[0-9]+\]: uams_dhx_pam.c :PAM: PAM (Auth OK!|Success -- Success)$
+afpd\[[0-9]+\]: using codepage directory: /etc/netatalk/nls/maccode\.[\.a-z0-9-]+$
+atalkd\[[0-9]+\]: zip (ignoring gnireply|gnireply from [\.0-9]+ \([[:alnum:]]+ [[:alnum:]]+\)) $
+papd\[[0-9]+\]: child [0-9]+ done$
+papd\[[0-9]+\]: child [0-9]+ for "[^[:space:]]+" from [\.0-9]+$
### ignore.d.server/netsaint
netsaint: Auto-save of retention data completed successfully\.$
netsaint: (HOST|SERVICE) (ALERT|NOTIFICATION|FLAPPING ALERT): .*$
diff --git a/logcheck/ignore.d.workstation/local b/logcheck/ignore.d.workstation/local
index ac47fa0..a89d585 100644
--- a/logcheck/ignore.d.workstation/local
+++ b/logcheck/ignore.d.workstation/local
@@ -151,36 +151,32 @@ murasaki\.usb\[[0-9]+\]: (MATCH\(audio\) -> match_flags:[[:alnum:]]+ )?vendor:[[
nagios: Auto-save of retention data completed successfully\.$
nagios: LOG ROTATION: DAILY$
### ignore.d.server/netatalk.changes
-afpd\[[0-9]+\]: CNID DB initialized using Sleepycat Software: Berkeley DB$
-afpd\[[0-9]+\]: removed [^[:space:]]+/net[\.0-9]+node[0-9]+$
-afpd\[[0-9]\]: ((dhx|cleartext|randnum/rand2num) )?login: [[:alnum:]]+$
-afpd\[[0-9]\]: (server_child\[[0-9]+\] [0-9]+ )?(done|exited 1)$
-afpd\[[0-9]\]: ASIP session:[0-9]+\([0-9]+\) from [\.:0-9]+\([0-9]+\)$
-afpd\[[0-9]\]: Connection terminated$
-afpd\[[0-9]\]: [\.[:alnum:]]+ read, [\.[:alnum:]]+ written$
-afpd\[[0-9]\]: [^[:space:]]+: (C|c)onnection timed out$
-afpd\[[0-9]\]: [^[:space:]]+: Broken pipe$
-afpd\[[0-9]\]: [^[:space:]]+: Connection reset by peer$
-afpd\[[0-9]\]: [^[:space:]]+: No route to host$
-afpd\[[0-9]\]: [^[:space:]]+: No such file or directory$
-afpd\[[0-9]\]: [^[:space:]]+: Permission denied$
-afpd\[[0-9]\]: [^[:space:]]+: child timed out$
-afpd\[[0-9]\]: afp_openfork: ad_open: File Exists$
-afpd\[[0-9]\]: asp_alrm: [0-9]+ timed out$
-afpd\[[0-9]\]: login [[:alnum:]]+ \(uid [0-9]+, gid [0-9]+\)$
-afpd\[[0-9]\]: login noauth$
-afpd\[[0-9]\]: logout [[:alnum:]]+$
-afpd\[[0-9]\]: registering [[:alnum:]]+ \(uid [0-9]+\) on [\.0-9]+ as /.+/net[\.0-9]+node[0-9]+$
-afpd\[[0-9]\]: session from [\.:0-9]+ on [\.:0-9]+$
-afpd\[[0-9]\]: uams_dhx_pam.c :PAM: PAM (Auth OK!|Success -- Success)$
-afpd\[[0-9]\]: using codepage directory: /etc/netatalk/nls/maccode\.[\.a-z0-9-]+$
-atalkd\[[0-9]+\]: [^[:space:]]+: zip gnireply from [\.0-9]+ \([^[:space:]]+\)$
-atalkd\[[0-9]+\]: [^[:space:]]+: zip ignoring gnireply$
-atalkd\[[0-9]\]: [^[:space:]]+: Network is unreachable$
-atalkd\[[0-9]\]: zip gnireply from [\.0-9]+ \([^[:space:]]+\)$
-atalkd\[[0-9]\]: zip ignoring gnireply$
-papd\[[0-9]\]: child [0-9]+ done$
-papd\[[0-9]\]: child [0-9]+ for "[^[:space:]]+" from [\.0-9]+$
+afpd\[[0-9]+\]: ((dhx|cleartext|randnum/rand2num) )?login: [[:alnum:]]+$
+afpd\[[0-9]+\]: (afp_flushfork|afp_read|getforkparms): (ad_refresh|of_find): (No such file or directory|No such process|Permission denied)$
+afpd\[[0-9]+\]: dsi_stream_read\(0\): (No such file or directory|No such process|Permission denied)$
+afpd\[[0-9]+\]: (atp_rresp|afp_die: asp_shutdown): Connection timed out$
+afpd\[[0-9]+\]: (registering [[:alnum:]]+ \(uid [0-9]+\) on [\.0-9]+ as|removed) /[^[:space:]]+/net[\.0-9]+node[0-9]+$
+afpd\[[0-9]+\]: (server_child\[[0-9]+\] [0-9]+ )?(done|exited 1)$
+afpd\[[0-9]+\]: ASIP session:[0-9]+\([0-9]+\) from [\.:0-9]+\([0-9]+\)$
+afpd\[[0-9]+\]: CNID DB initialized using Sleepycat Software: Berkeley DB( [\.0-9]+: \([^\(]+\))?$
+afpd\[[0-9]+\]: Connection terminated$
+afpd\[[0-9]+\]: [\.[:alnum:]]+ read, [\.[:alnum:]]+ written$
+afpd\[[0-9]+\]: [_[:alnum:]]+(\(-?[0-9]+\))?: stat [^:]+: (No such file or directory|Permission denied)$
+afpd\[[0-9]+\]: afp_alarm: child timed out$
+atalkd\[[0-9]+\]: as_timer sendto: Network is unreachable $
+afpd\[[0-9]+\]: asp_alrm: [0-9]+ timed out$
+afpd\[[0-9]+\]: dsi_stream_(read\(-1\)|write): Connection reset by peer$
+afpd\[[0-9]+\]: dsi_stream_read\(0\): Success$
+afpd\[[0-9]+\]: error stat'ing /[^[:space:]]+/net[\.0-9]+node[0-9]+: No such file or directory$
+afpd\[[0-9]+\]: login [[:alnum:]]+ \(uid [0-9]+, gid [0-9]+\)( AFP2\.2)?$
+afpd\[[0-9]+\]: login noauth$
+afpd\[[0-9]+\]: logout [[:alnum:]]+$
+afpd\[[0-9]+\]: session from [\.:0-9]+ on [\.:0-9]+$
+afpd\[[0-9]+\]: uams_dhx_pam.c :PAM: PAM (Auth OK!|Success -- Success)$
+afpd\[[0-9]+\]: using codepage directory: /etc/netatalk/nls/maccode\.[\.a-z0-9-]+$
+atalkd\[[0-9]+\]: zip (ignoring gnireply|gnireply from [\.0-9]+ \([[:alnum:]]+ [[:alnum:]]+\)) $
+papd\[[0-9]+\]: child [0-9]+ done$
+papd\[[0-9]+\]: child [0-9]+ for "[^[:space:]]+" from [\.0-9]+$
### ignore.d.server/netsaint
netsaint: Auto-save of retention data completed successfully\.$
netsaint: (HOST|SERVICE) (ALERT|NOTIFICATION|FLAPPING ALERT): .*$
diff --git a/logcheck/violations.ignore.d/local b/logcheck/violations.ignore.d/local
index ab3fd66..90a85f1 100644
--- a/logcheck/violations.ignore.d/local
+++ b/logcheck/violations.ignore.d/local
@@ -19,8 +19,8 @@ kernel: Packet log: input DENY eth[0-9]+ PROTO=17 .*:137 .*:137 L=78 S=0x00 I=[0
### violations.ignore.d/netatalk.changes
afpd\[[0-9]+\]: afp_die: asp_shutdown: Connection timed out$
afpd\[[0-9]+\]: afp_getsrvrparms: stat /[^/]+/: Permission denied$
-afpd\[[0-9]+\]: dsi_stream_read\([[:digit:]]+\): Permission denied$
-afpd\[[0-9]+\]: getforkparms: (ad_refresh|of_find): Permission denied$
+afpd\[[0-9]+\]: (afp_flushfork|afp_read|getforkparms): (ad_refresh|of_find): Permission denied$
+afpd\[[0-9]+\]: dsi_stream_read\(0\): Permission denied$
### violations.ignore.d/netsaint
netsaint: SERVICE ALERT:.*;PING;CRITICAL;.*;PING CRITICAL - Packet loss =.*%, RTA =.*ms
netsaint: SERVICE ALERT:.*;ROUTER;CRITICAL;.*;CRITICAL - Plugin timed out after 10 seconds