summaryrefslogtreecommitdiff
path: root/logcheck/ignore.d.server/tmp
diff options
context:
space:
mode:
Diffstat (limited to 'logcheck/ignore.d.server/tmp')
-rw-r--r--logcheck/ignore.d.server/tmp5
1 files changed, 3 insertions, 2 deletions
diff --git a/logcheck/ignore.d.server/tmp b/logcheck/ignore.d.server/tmp
index 50bf0fc..9f25fca 100644
--- a/logcheck/ignore.d.server/tmp
+++ b/logcheck/ignore.d.server/tmp
@@ -44,11 +44,12 @@ portsentry\[[0-9]+\]: attackalert: .*
pumpd\[[0-9]+\]: SO_BINDTODEVICE eth0 \(4\) failed: Invalid argument
## samba
smbd\[[0-9]+\]: process_local_message: unknown UDP message command code \(2de1\) - ignoring. $
-smbd\[[0-9]+\]: read(_socket)?_data: recv failure for 4. Error = (No route to host|Connection reset by peer) $
+smbd\[[0-9]+\]: read(_socket)?_data: (read|recv) failure for 4. Error = (No route to host|Connection reset by peer) $
smbd\[[0-9]+\]: smb_pam_passcheck: PAM: smb_pam_auth failed - Rejecting User [[:alnum:]]+ ! $
smbd\[[0-9]+\]: yield_connection: tdb_delete for name failed with error Record does not exist\. $
smbd\[[0-9]+\]: \[[0-9/]+ [0-9:]+, [0-9]+\] (lib/util_sock.c:read_data|passdb/pampass.c:smb_pam_passcheck|smbd/(connection.c:yield_connection|oplock.c:process_local_message|service.c:find_service))\([0-9]+\) $
-sshd\[[0-9]+\]: Failed password for [[:alnum:]]+ $
+## ssh
+sshd\[[0-9]+\]: Failed password for [[:alnum:]]+ from [0-9\.]+ port [0-9]+ ssh2$
sshd\[[0-9]+\]: packet_set_maxsize: setting to 4096 $
## postfix
postfix.*\[[0-9]+\]: .* from=<groove@mailomat.grooveattack.com>