On Fri, 2011-07-01 at 09:05 -0400, Tanstaafl wrote:
> On 2011-07-01 6:27 AM, John Horne wrote:
> > I'll need to see the output from '--debug' then or perhaps the (whole)
> > log file when you run 'rkhunter --propupd' and from when the system run
> > of rkhunter occurs (I can compare the two then).
>
> Ok, thanks for taking a look at this John...
>
> Attached are the two logs... the .old is last nights nightly run, and
> the .log is a --propupd I just ran a few minutes ago...
>
Something not quite right:
rkhunter.log: [08:54:50] Info: Command line is /usr/sbin/rkhunter
--cronjob --nocolors --summary --createlogfile /var/log/rkhunter.log
rkhunter.log.old: [08:54:42] Info: Command line is /usr/sbin/rkhunter
--nocolor --update
The 'rkhunter.log' is fine, but I need a log file of 'rkhunter
--propupd'.
Email the log file to me directly, no need for it to go to the list.
John.
--
John Horne Tel: +44 (0)1752 587287
University of Plymouth, UK Fax: +44 (0)1752 587001
------------------------------------------------------------------------------
All of the data generated in your IT infrastructure is seriously valuable.
Why? It contains a definitive record of application performance, security
threats, fraudulent activity, and more. Splunk takes this data and makes
sense of it. IT sense. And common sense.
http://p.sf.net/sfu/splunk-d2d-c2
_______________________________________________
Rkhunter-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/rkhunter-users