Server-Sicherheit (was: Re: Software zur Auswertung von Linux Log files)

Martin Bökenkamp connectnet at web.de
Mi Apr 5 10:37:55 CEST 2006


> PS: Kannst du bitte mal deinen Absender korrigieren. Kein Realname im
> Absender wird im allgemeinen im Netz als unhoeflich angesehen.
Uuups, sorry. Das wollte ich nicht.
Bekomme in letzten Zeit immer so merkwürdige Einträge im Log:
Mar 23 04:57:12 s1 sshd[30955]: Illegal user adam from ::ffff:219.232.118.3
Mar 23 04:57:12 s1 sshd[30955]: input_userauth_request: illegal user adam
Mar 23 04:57:12 s1 sshd[30955]: Failed password for illegal user adam from  
::ffff:219.232.118.3 port 58999 ssh2
Mar 23 04:57:13 s1 sshd[30955]: Received disconnect from  
::ffff:219.232.118.3: 11: Bye Bye
Mar 23 04:57:15 s1 sshd[30956]: Illegal user adam from ::ffff:219.232.118.3
Mar 23 04:57:15 s1 sshd[30956]: input_userauth_request: illegal user adam
Mar 23 04:57:15 s1 sshd[30956]: Failed password for illegal user adam from  
::ffff:219.232.118.3 port 59119 ssh2
Mar 23 04:57:16 s1 sshd[30956]: Received disconnect from  
::ffff:219.232.118.3: 11: Bye Bye
Mar 23 04:57:19 s1 sshd[30957]: Illegal user adam from ::ffff:219.232.118.3
Mar 23 04:57:19 s1 sshd[30957]: input_userauth_request: illegal user adam
Mar 23 04:57:19 s1 sshd[30957]: Failed password for illegal user adam from  
::ffff:219.232.118.3 port 59240 ssh2

und so weiter....