[NCLUG] Two easy? security questions...

dobbster dobbster at verinet.com
Mon Sep 4 12:48:52 MDT 2000


Hi Matt,

> First question...  For reference, what Distro are you running?

Mandrake 6.2.

> Second:  Have you tried running 'find / -name 'btmp' -print' and seeing if
> there are any more copies of that file out there?

Yes...  There is only one copy.

> Third:  Even though the manpage says btmp, on my Debian 2.2 box here, the
> failed attempts are stored in /var/log/faillog, NOT /var/log/btmp.  When
> I run a find on it, in fact, I am told that no file named btmp exists.  Of
> course, that breaks the functionality of lastb....  when I link
> /var/log/faillog to /var/log/btmp, however...  it seems to click again.

Interesting.  I wasn't aware of faillog; I read the man page.  I did
attempt what you suggested, creating /var/log/faillog, and linking it to
/var/log/btmp.  Still, the log files remain empty.



More information about the NCLUG mailing list