vsftpd

This is a discussion on vsftpd within the Linux Security forums, part of the System Security and Security Related category; Might there be a way to get vsftpd to log "Permission denied" attempts as well as "Login ...


Go Back   Usenet Forums > System Security and Security Related > Linux Security

FAQ Members List Calendar Search Today's Posts Mark Forums Read
  #1 (permalink)  
Old 08-23-2003
Garrison
 
Posts: n/a
Default vsftpd

Might there be a way to get vsftpd to log "Permission denied" attempts as
well as "Login incorrect" attempts?

Permission denied = username is not allowed to log in
Login incorrect = good username, bad password

-g
Reply With Quote
  #2 (permalink)  
Old 08-24-2003
Whoever
 
Posts: n/a
Default Re: vsftpd

On Sat, 23 Aug 2003, Garrison wrote:

> Might there be a way to get vsftpd to log "Permission denied" attempts as
> well as "Login incorrect" attempts?
>
> Permission denied = username is not allowed to log in
> Login incorrect = good username, bad password
>
> -g


Look for "authentication failure" and "user unknown" in your logfile


>


Reply With Quote
  #3 (permalink)  
Old 08-24-2003
Garrison
 
Posts: n/a
Default Re: vsftpd

On Sun, 24 Aug 2003 04:16:57 +0000, Whoever wrote:

>> Might there be a way to get vsftpd to log "Permission denied" attempts as
>> well as "Login incorrect" attempts?
>>
>> Permission denied = username is not allowed to log in
>> Login incorrect = good username, bad password

>
> Look for "authentication failure" and "user unknown" in your logfile


There are no such entries for vsftpd, "Login incorrect" messages to the
client yield "[user] FAIL LOGIN" messages in vsftpd.log

If it was logging, I'd see it.
Reply With Quote
  #4 (permalink)  
Old 08-25-2003
Whoever
 
Posts: n/a
Default Re: vsftpd

On Sun, 24 Aug 2003, Garrison wrote:

> On Sun, 24 Aug 2003 04:16:57 +0000, Whoever wrote:
>
> >> Might there be a way to get vsftpd to log "Permission denied" attempts as
> >> well as "Login incorrect" attempts?
> >>
> >> Permission denied = username is not allowed to log in
> >> Login incorrect = good username, bad password

> >
> > Look for "authentication failure" and "user unknown" in your logfile

>
> There are no such entries for vsftpd, "Login incorrect" messages to the
> client yield "[user] FAIL LOGIN" messages in vsftpd.log
>
> If it was logging, I'd see it.


I am using vsftpd on a gentoo system and I see the above messages (both)
if an attempt is made to login with a non-existent username.

Did you build vsftp with support for PAM? What logging do you have enabled
in your vsftp.conf file?

>


Reply With Quote
  #5 (permalink)  
Old 08-25-2003
Garrison
 
Posts: n/a
Default Re: vsftpd

On Mon, 25 Aug 2003 04:02:01 +0000, Whoever wrote:

> I am using vsftpd on a gentoo system and I see the above messages (both)
> if an attempt is made to login with a non-existent username.
>
> Did you build vsftp with support for PAM? What logging do you have enabled
> in your vsftp.conf file?


I see them now as well, but only by enabling log_ftp_protocol, which
causes every message btw client/server to be logged. The man page doesn't
seem to suggest that there is a level between the sparse logging I had and
the debug logging I have.
Reply With Quote
Reply
Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is Off
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT +1. The time now is 04:54 AM.


Powered by vBulletin® Version 3.7.3
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.0.0