diff --git a/logcheck_ignore b/logcheck_ignore index 700f02d..aacf874 100644 --- a/logcheck_ignore +++ b/logcheck_ignore @@ -405,6 +405,10 @@ #May 5 10:08:49 nada sshd[4523]: fatal: no hostkey alg [preauth] ^\w{3} [ :[:digit:]]{11} [._[:alnum:]-]+ sshd\[[[:digit:]]+\]: fatal: no hostkey alg \[preauth\] +#Aug 16 19:28:06 nada sshd[12135]: Postponed keyboard-interactive/pam for invalid user admin from 75.149.180.141 port 65264 ssh2 [preauth] +#Aug 16 21:57:30 nada sshd[26976]: Postponed keyboard-interactive/pam for invalid user support from 103.207.36.244 port 59302 ssh2 [preauth] +\w{3} [ :[:digit:]]{11} [._[:alnum:]-]+ sshd\[[[:digit:]]+\]: Postponed keyboard-interactive/pam for invalid user support from [.:[:digit:]]+ port [[:digit:]]+ ssh2 \[preauth\] + # diff --git a/testlog b/testlog index 6bc9a62..d5c0d19 100644 --- a/testlog +++ b/testlog @@ -211,3 +211,5 @@ Jun 25 12:58:28 kvarnen freshclam[15554]: WARNING: getfile: Unknown response fro Jun 25 16:58:32 kvarnen freshclam[15554]: WARNING: getfile: daily-21788.cdiff not found on db.local.clamav.net (IP: 217.19.16.188) Jun 25 17:16:28 nada sshd[7066]: input_userauth_request: invalid user secret\\r [preauth] Jun 25 17:26:26 nada sshd[7935]: input_userauth_request: invalid user user\\r [preauth] +Aug 16 19:28:06 nada sshd[12135]: Postponed keyboard-interactive/pam for invalid user admin from 75.149.180.141 port 65264 ssh2 [preauth] +Aug 16 21:57:30 nada sshd[26976]: Postponed keyboard-interactive/pam for invalid user support from 103.207.36.244 port 59302 ssh2 [preauth]