On Sun, 19 Oct 2014 14:06:02 +0100 Peter Wyss <wys...@yahoo.de> wrote: > Package: logcheck-database
> The logcheck ignore.d.server rules for openvpn need some adjustments. > > The following 2 entries need to be adjusted to include [AF_INET]: > ^\w{3} [ :[:digit:]]{11} [._[:alnum:]-]+ > (openvpn|ovpn-[._[:alnum:]-]+)\[[[:digit:]]+\]:( > ([-_.@[:alnum:]]+/)?[.[:digit:]]{7,15}:[[:digit:]]{2,5})? TLS: Initial packet > from (\[AF_INET\])?[.[:digit:]]{7,15}:[[:digit:]]+, sid=[[:xdigit:]]{8} > [[:xdigit:]]{8}$ > ^\w{3} [ :[:digit:]]{11} [._[:alnum:]-]+ > (openvpn|ovpn-[._[:alnum:]-]+)\[[[:digit:]]+\]:(( > ([-_.@[:alnum:]]+/)?[.[:digit:]]{7,15}:[[:digit:]]{2,5})?( > \[[-._[:alnum:]]+\])?)? Peer Connection Initiated with > (\[AF_INET\])?[[:digit:].]{7,15}:[[:digit:]]+$ > > The following 2 entries are missing: > ^\w{3} [ :[:digit:]]{11} [._[:alnum:]-]+ > (openvpn|ovpn-[._[:alnum:]-]+)\[[[:digit:]]+\]:( > ([-_.@[:alnum:]]+/)?[.[:digit:]]{7,15}:[[:digit:]]{2,5})? MULTI_sva: pool > returned IPv4=[.[:digit:]]{7,15}, IPv6=[[:xdigit:].:]{3,39}$ > ^\w{3} [ :[:digit:]]{11} [._[:alnum:]-]+ > (openvpn|ovpn-[._[:alnum:]-]+)\[[[:digit:]]+\]:( > ([-_.@[:alnum:]]+/)?[.[:digit:]]{7,15}:[[:digit:]]{2,5})? > send_push_reply\(\): safe_cap=[[:digit:]]+$ Hi, it's a shame no-one replied since 2014 - let's change that. Is this bug still valid - i imagine messages will have moved on since 2014?