This is a discussion on logwatch httpd within the Linux software forums, part of the Linux Getting Started category; As the root of my system, i saw a message today in my logwatch. " a total of 1 user ...
|
|||||||
| Register | FAQ | Members List | Calendar | Forgotten your password? | Mark Forums Read |
| Sponsored Links | ||
|
|
|
||||
|
Maybe...
Somebody doing penetration Testing for your Web Application/server. Or may be try to just something bas. This message can be coz of virus too ... it is better to use Apahce modsecuirty http://www.modsecurity.org/ which is Open source Intrusion Detection and Prevention module for Web applications. Also check out http://httpd.apache.org/docs/2.0/mod..._forensic.html - Apahces' forensic module which also gives good info. |
|
||||
|
kavi, yup when you stop httpd you are safe for while. It is better to use firewall (I hope you got one) and run only needed services. You also need to make sure that sshd is also secure. Btw what distro you are using? If it is old ssh server upgrade it; old ssh server is know for ssh user attacks.
__________________
Rocky Jr. You may have my body & soul, but you will never touch my pride! If you have knowledge, let others light their candles at it. Certified to work on HP-UX / Sun Solaris / RedHat |
![]() |
| Bookmarks |
Currently Active Users Viewing This Thread: 1 (0 members and 1 guests) |
|
| Thread Tools | |
| Display Modes | |
|
|
|
||||
| Thread | Thread Starter | Forum | Replies | Last Post |
| httpd.conf deleted! How to re-generate? Any Scripts? | vivekv | Shell scripting | 1 | 07-17-2008 06:13 PM |
| httpd.conf deleted! How to re-generate? | vivekv | Getting started tutorials | 2 | 01-17-2008 04:45 PM |
| httpd process | vimalgoel | Getting started tutorials | 1 | 10-08-2007 01:40 AM |
| HTTPD dead but subsys locked | surmandal | Web servers | 10 | 07-31-2007 09:53 AM |
| Linux create self signed ssl certificate for Apache httpd server | raj | Getting started tutorials | 0 | 05-05-2007 02:23 AM |