[19337] in bugtraq
Fwd: Re: Login Failures under Solaris 2.7
daemon@ATHENA.MIT.EDU (Michael)
Thu Feb 22 20:01:52 2001
Mime-Version: 1.0
Content-Type: text/plain; charset="us-ascii"; format=flowed
Message-Id: <5.0.0.25.0.20010222113323.00ad2140@mail.bombshelter.net>
Date: Thu, 22 Feb 2001 11:35:21 -0700
Reply-To: Michael <mblank@BOMBSHELTER.NET>
From: Michael <mblank@BOMBSHELTER.NET>
To: BUGTRAQ@SECURITYFOCUS.COM
SunOS phxasn2 5.6 Generic_105181-23 sun4u sparc SUNW,Ultra-Enterprise-10000
SunOS phxasn4 5.8 Generic_108528-04 sun4u sparc SUNW,Ultra-4
After five unsuccessful login attempts, all the attempts are
logged in the file /var/adm/loginlog. This file contains one
record for each failed attempt. Each record contains the
login name, tty specification, and time.
This is an ASCII file. Each field within each entry is
separated from the next by a colon. Each entry is separated
from the next by a new-line.
By default, loginlog does not exist, so no logging is done.
To enable logging, the log file must be created with read
and write permission for owner only. Owner must be root and
group must be sys.