__ __ __ __ _____ _ _ _____ _ _ _ | \/ | \ \ / / | __ \ (_) | | / ____| | | | | | \ / |_ __\ V / | |__) | __ ___ ____ _| |_ ___ | (___ | |__ ___| | | | |\/| | '__|> < | ___/ '__| \ \ / / _` | __/ _ \ \___ \| '_ \ / _ \ | | | | | | |_ / . \ | | | | | |\ V / (_| | || __/ ____) | | | | __/ | | |_| |_|_(_)_/ \_\ |_| |_| |_| \_/ \__,_|\__\___| |_____/|_| |_|\___V 2.1 if you need WebShell for Seo everyday contact me on Telegram Telegram Address : @jackleetFor_More_Tools:
# -- _daemon with __pid_re, without __hostname --
# failJSON: { "time": "2005-06-21T16:47:46", "match": true , "host": "192.0.2.1" }
Jun 21 16:47:46 machine test-demo[13709]: F2B: failure from 192.0.2.1
# -- _daemon with __pid_re --
# failJSON: { "time": "2005-06-21T16:47:48", "match": true , "host": "192.0.2.1" }
Jun 21 16:47:48 test-demo[13709]: F2B: failure from 192.0.2.1
# -- __kernel_prefix --
# failJSON: { "time": "2005-06-21T16:47:50", "match": true , "host": "192.0.2.2" }
Jun 21 16:47:50 machine kernel: [ 970.699396] F2B: failure from 192.0.2.2
# -- _daemon_re with and without __pid_re --
# failJSON: { "time": "2005-06-21T16:47:52", "match": true , "host": "192.0.2.3" }
Jun 21 16:47:52 machine [test-demo] F2B: failure from 192.0.2.3
# failJSON: { "time": "2005-06-21T16:47:53", "match": true , "host": "192.0.2.3" }
Jun 21 16:47:53 machine [test-demo][13709] F2B: failure from 192.0.2.3
# failJSON: { "time": "2005-06-21T16:50:00", "match": true , "host": "192.0.2.3" }
Jun 21 16:50:00 machine test-demo(pam_unix) F2B: failure from 192.0.2.3
# failJSON: { "time": "2005-06-21T16:50:02", "match": true , "host": "192.0.2.3" }
Jun 21 16:50:02 machine test-demo(pam_unix)[13709] F2B: failure from 192.0.2.3
# -- all common definitions together (bsdverbose hostname kernel_prefix vserver tag daemon_id space) --
# failJSON: { "time": "2005-06-21T16:55:01", "match": true , "host": "192.0.2.3" }
Jun 21 16:55:01 <auth.info> machine kernel: [ 970.699396] @vserver_demo test-demo(pam_unix)[13709] [ID 255 test] F2B: failure from 192.0.2.3
# -- the same as above with additional spaces around --
# failJSON: { "time": "2005-06-21T16:55:02", "match": true , "host": "192.0.2.3" }
Jun 21 16:55:02 <auth.info> machine kernel: [ 970.699396] @vserver_demo test-demo(pam_unix)[13709] [ID 255 test] F2B: failure from 192.0.2.3
# -- the same as above with brackets as date ambit --
# failJSON: { "time": "2005-06-21T16:55:03", "match": true , "host": "192.0.2.3" }
[Jun 21 16:55:03] <auth.info> machine kernel: [ 970.699396] @vserver_demo test-demo(pam_unix)[13709] [ID 255 test] F2B: failure from 192.0.2.3
# -- wrong time direct in journal-line (used last known date or now, but null because no checkFindTime in samples test factory):
# failJSON: { "time": null, "match": true , "host": "192.0.2.1" }
0000-12-30 00:00:00 server test-demo[47831]: F2B: failure from 192.0.2.1
# -- wrong time after newline in message (plist without escaped newlines):
# failJSON: { "match": false }
Jun 22 20:37:04 server test-demo[402]: writeToStorage plist={
# failJSON: { "match": false }
absentCircleWithNoReason = 0;
# failJSON: { "match": false }
applicationDate = "0000-12-30 00:00:00 +0000";
# failJSON: { "match": false }
}
# -- wrong time direct in journal-line (used last known date, but null because no checkFindTime in samples test factory):
# failJSON: { "time": null, "match": true , "host": "192.0.2.2" }
0000-12-30 00:00:00 server test-demo[47831]: F2B: failure from 192.0.2.2
# -- test no zone and UTC/GMT named zone "2005-06-21T14:55:10 UTC" == "2005-06-21T16:55:10 CEST" (diff +2h in CEST):
# failJSON: { "time": "2005-06-21T16:55:09", "match": true , "host": "192.0.2.09" }
2005-06-21 16:55:09 machine test-demo(pam_unix)[13709] F2B: error from 192.0.2.09
# failJSON: { "time": "2005-06-21T16:55:10", "match": true , "host": "192.0.2.10" }
2005-06-21 14:55:10 UTC machine test-demo(pam_unix)[13709] F2B: error from 192.0.2.10
# failJSON: { "time": "2005-06-21T16:55:11", "match": true , "host": "192.0.2.11" }
2005-06-21 14:55:11 GMT machine test-demo(pam_unix)[13709] F2B: error from 192.0.2.11
# failJSON: { "time": "2005-06-21T16:56:02", "match": true , "host": "192.0.2.250" }
[Jun 21 16:56:02] machine test-demo(pam_unix)[13709] F2B: error from 192.0.2.250
# failJSON: { "match": false, "desc": "test 1st ignoreregex" }
[Jun 21 16:56:03] machine test-demo(pam_unix)[13709] F2B: error from 192.0.2.251
# failJSON: { "match": false, "desc": "test 2nd ignoreregex" }
[Jun 21 16:56:04] machine test-demo(pam_unix)[13709] F2B: error from 192.0.2.252
# failJSON: { "match": false, "desc": "ignore other daemon" }
[Jun 21 16:56:04] machine captain-nemo(pam_unix)[55555] F2B: error from 192.0.2.2
| Name | Type | Size | Permission | Actions |
|---|---|---|---|---|
| bsd | Folder | 0755 |
|
|
| 3proxy | File | 575 B | 0644 |
|
| apache-auth | File | 12.5 KB | 0644 |
|
| apache-badbots | File | 688 B | 0644 |
|
| apache-botsearch | File | 3.66 KB | 0644 |
|
| apache-fakegooglebot | File | 480 B | 0644 |
|
| apache-modsecurity | File | 2.59 KB | 0644 |
|
| apache-nohome | File | 406 B | 0644 |
|
| apache-noscript | File | 2.64 KB | 0644 |
|
| apache-overflows | File | 2.7 KB | 0644 |
|
| apache-pass | File | 273 B | 0644 |
|
| apache-shellshock | File | 499 B | 0644 |
|
| assp | File | 5.09 KB | 0644 |
|
| asterisk | File | 13.64 KB | 0644 |
|
| bitwarden | File | 741 B | 0644 |
|
| centreon | File | 252 B | 0644 |
|
| counter-strike | File | 399 B | 0644 |
|
| courier-auth | File | 1.04 KB | 0644 |
|
| courier-smtp | File | 1.69 KB | 0644 |
|
| cyrus-imap | File | 2.4 KB | 0644 |
|
| directadmin | File | 835 B | 0644 |
|
| domino-smtp | File | 1.26 KB | 0644 |
|
| dovecot | File | 16.25 KB | 0644 |
|
| dropbear | File | 1.3 KB | 0644 |
|
| drupal-auth | File | 2.31 KB | 0644 |
|
| ejabberd-auth | File | 1.46 KB | 0644 |
|
| exim | File | 10.2 KB | 0644 |
|
| exim-spam | File | 3.38 KB | 0644 |
|
| freeswitch | File | 2.33 KB | 0644 |
|
| froxlor-auth | File | 354 B | 0644 |
|
| gitlab | File | 392 B | 0644 |
|
| grafana | File | 564 B | 0644 |
|
| groupoffice | File | 309 B | 0644 |
|
| gssftpd | File | 176 B | 0644 |
|
| guacamole | File | 1016 B | 0644 |
|
| haproxy-http-auth | File | 943 B | 0644 |
|
| horde | File | 567 B | 0644 |
|
| kerio | File | 3.23 KB | 0644 |
|
| lighttpd-auth | File | 1.36 KB | 0644 |
|
| mongodb-auth | File | 2 KB | 0644 |
|
| monit | File | 2.35 KB | 0644 |
|
| monitorix | File | 863 B | 0644 |
|
| mssql-auth | File | 1.26 KB | 0644 |
|
| murmur | File | 702 B | 0644 |
|
| mysqld-auth | File | 3.61 KB | 0644 |
|
| nagios | File | 226 B | 0644 |
|
| named-refused | File | 3.22 KB | 0644 |
|
| nginx-bad-request | File | 1.37 KB | 0644 |
|
| nginx-botsearch | File | 2.64 KB | 0644 |
|
| nginx-http-auth | File | 3.6 KB | 0644 |
|
| nginx-limit-req | File | 1.14 KB | 0644 |
|
| nsd | File | 648 B | 0644 |
|
| openhab | File | 692 B | 0644 |
|
| openwebmail | File | 615 B | 0644 |
|
| oracleims | File | 1.8 KB | 0644 |
|
| pam-generic | File | 2.37 KB | 0644 |
|
| perdition | File | 589 B | 0644 |
|
| php-url-fopen | File | 314 B | 0644 |
|
| phpmyadmin-syslog | File | 177 B | 0644 |
|
| portsentry | File | 341 B | 0644 |
|
| postfix | File | 15.87 KB | 0644 |
|
| proftpd | File | 2.88 KB | 0644 |
|
| pure-ftpd | File | 195 B | 0644 |
|
| qmail | File | 830 B | 0644 |
|
| recidive | File | 1.38 KB | 0644 |
|
| roundcube-auth | File | 5.42 KB | 0644 |
|
| scanlogd | File | 854 B | 0644 |
|
| screensharingd | File | 1.09 KB | 0644 |
|
| selinux-ssh | File | 3.36 KB | 0644 |
|
| sendmail-auth | File | 3.84 KB | 0644 |
|
| sendmail-reject | File | 10.83 KB | 0644 |
|
| sieve | File | 535 B | 0644 |
|
| slapd | File | 1.12 KB | 0644 |
|
| softethervpn | File | 648 B | 0644 |
|
| sogo-auth | File | 3.47 KB | 0644 |
|
| solid-pop3d | File | 1.59 KB | 0644 |
|
| squid | File | 895 B | 0644 |
|
| squirrelmail | File | 197 B | 0644 |
|
| sshd | File | 33.6 KB | 0644 |
|
| sshd-journal | File | 23.82 KB | 0644 |
|
| stunnel | File | 267 B | 0644 |
|
| suhosin | File | 1.26 KB | 0644 |
|
| tine20 | File | 520 B | 0644 |
|
| traefik-auth | File | 1.81 KB | 0644 |
|
| uwimap-auth | File | 1.51 KB | 0644 |
|
| vsftpd | File | 1.1 KB | 0644 |
|
| webmin-auth | File | 640 B | 0644 |
|
| wuftpd | File | 631 B | 0644 |
|
| xinetd-fail | File | 331 B | 0644 |
|
| znc-adminlog | File | 708 B | 0644 |
|
| zoneminder | File | 715 B | 0644 |
|
| zzz-generic-example | File | 4.15 KB | 0644 |
|
| zzz-sshd-obsolete-multiline | File | 36 B | 0644 |
|