From owner-freebsd-security Tue Jul 17 12:12:54 2001 Delivered-To: freebsd-security@freebsd.org Received: from mail.taloncc.com (ns.taloncc.com [208.149.58.8]) by hub.freebsd.org (Postfix) with SMTP id 048A037B401 for ; Tue, 17 Jul 2001 12:12:47 -0700 (PDT) (envelope-from nathan@corp.wac.com) Received: (qmail 5280 invoked from network); 17 Jul 2001 19:16:49 -0000 Received: from wall.lodinet.com (HELO NATHAN) (206.151.38.45) by ns.taloncc.com with SMTP; 17 Jul 2001 19:16:49 -0000 Message-ID: <004801c10ef5$1d3a9740$f5c8a8c0@NATHAN> From: To: Cc: References: <20010717123422.A97994@rapid.black.pl> <20010717104227.A46090@networkcommand.com> <003401c10ef4$4b631bc0$f5c8a8c0@NATHAN> <3B548D87.92EBEAD7@centtech.com> Subject: Re: Exec logging, FreeBSD Kernel Module. Date: Tue, 17 Jul 2001 12:17:25 -0700 MIME-Version: 1.0 Content-Type: text/plain; charset="iso-8859-1" Content-Transfer-Encoding: 7bit X-Priority: 3 X-MSMail-Priority: Normal X-Mailer: Microsoft Outlook Express 5.50.4522.1200 X-MimeOLE: Produced By Microsoft MimeOLE V5.50.4522.1200 Sender: owner-freebsd-security@FreeBSD.ORG Precedence: bulk List-ID: List-Archive: (Web Archive) List-Help: (List Instructions) List-Subscribe: List-Unsubscribe: X-Loop: FreeBSD.org actually to reply to those messages.. i did compile the snp p-device in to my kernel. i'm using FreeBSD 4.2-RELEASE #1... ----- Original Message ----- From: "Eric Anderson" To: Cc: "jono@networkcommand.com" ; Sent: Tuesday, July 17, 2001 12:09 PM Subject: Re: Exec logging, FreeBSD Kernel Module. > Did you compile the snp pseudo-devices into your kernel, and make the > devices? > > Works great for me.. > > Eric > > > nathan@corp.wac.com wrote: > > > > to reply to your last message.. i've never been able to get watch to work > > properly. has anyone else? > > > > ----- Original Message ----- > > From: "Jon O ." > > To: "Artur Meski" > > Cc: > > Sent: Tuesday, July 17, 2001 10:42 AM > > Subject: Re: Exec logging, FreeBSD Kernel Module. > > > > > See below: > > > > > > > > > # man watch > > > WATCH(8) FreeBSD System Manager's Manual > > WATCH(8) > > > > > > NAME > > > watch - snoop on another tty line > > > > > > SYNOPSIS > > > watch [-ciotnW] [tty] > > > > > > DESCRIPTION > > > Watch allows the superuser to examine all data coming through a > > specified > > > tty. Watch writes to standard output. > > > > > > > > > > > > # man snp > > > SNP(4) FreeBSD Kernel Interfaces Manual > > SNP(4) > > > > > > NAME > > > snp - tty snoop interface > > > > > > SYNOPSIS > > > #include > > > > > > > > > > > > > > > On 17-Jul-2001, Artur Meski wrote: > > > > Hi. > > > > > > > > I'm looking for FreeBSD Kernel Module, which will log all executed > > commands > > > > by users. Could somebody help me? > > > > > > > > -- > > > > Artur Meski [glash@freebsd.net.pl] [tel +48606494552] > > [http://glash.black.pl/] > > > > > > > > To Unsubscribe: send mail to majordomo@FreeBSD.org > > > > with "unsubscribe freebsd-security" in the body of the message > > > > > > To Unsubscribe: send mail to majordomo@FreeBSD.org > > > with "unsubscribe freebsd-security" in the body of the message > > > > To Unsubscribe: send mail to majordomo@FreeBSD.org > > with "unsubscribe freebsd-security" in the body of the message > > -- > -------------------------------------------------------------------------- ----- > Eric Anderson anderson@centtech.com Centaur Technology (512) > 418-5792 > For every complex problem, there is a solution that is simple, neat, and > wrong. > -------------------------------------------------------------------------- ----- To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-security" in the body of the message