From owner-freebsd-questions Sat Mar 15 11:31:58 2003 Delivered-To: freebsd-questions@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 38D0037B401 for ; Sat, 15 Mar 2003 11:31:57 -0800 (PST) Received: from mailout.informatik.tu-muenchen.de (mailout.informatik.tu-muenchen.de [131.159.0.5]) by mx1.FreeBSD.org (Postfix) with ESMTP id C464F43FA3 for ; Sat, 15 Mar 2003 11:31:55 -0800 (PST) (envelope-from barner@in.tum.de) Received: from mailrelay1.informatik.tu-muenchen.de (mailrelay1.informatik.tu-muenchen.de [131.159.254.5]) by mailout.informatik.tu-muenchen.de (Postfix) with ESMTP id 785ED61B9; Sat, 15 Mar 2003 20:31:54 +0100 (MET) Received: from mail.informatik.tu-muenchen.de (mail.informatik.tu-muenchen.de [131.159.0.26]) by mailrelay1.informatik.tu-muenchen.de (Postfix) with ESMTP id 69B5A7947; Sat, 15 Mar 2003 20:31:54 +0100 (MET) Received: from zi025.glhnet.mhn.de (unknown [129.187.19.157]) by mail.informatik.tu-muenchen.de (Postfix) with ESMTP id 3194F6CB10; Sat, 15 Mar 2003 20:31:54 +0100 (MET) Received: by zi025.glhnet.mhn.de (Postfix, from userid 1000) id 93DEB36B3B; Sat, 15 Mar 2003 20:31:49 +0100 (CET) Date: Sat, 15 Mar 2003 20:31:48 +0100 From: Simon Barner To: freebsd-questions@freebsd.org Cc: Cary Mathews Subject: Re: ssh'ing into jail(8) Message-ID: <20030315193148.GA5708@zi025.glhnet.mhn.de> References: <3E737A3B.8010305@liwing.de> Mime-Version: 1.0 Content-Type: multipart/signed; micalg=pgp-sha1; protocol="application/pgp-signature"; boundary="WIyZ46R2i8wDzkSu" Content-Disposition: inline In-Reply-To: <3E737A3B.8010305@liwing.de> User-Agent: Mutt/1.5.3i Sender: owner-freebsd-questions@FreeBSD.ORG Precedence: bulk List-ID: List-Archive: (Web Archive) List-Help: (List Instructions) List-Subscribe: List-Unsubscribe: X-Loop: FreeBSD.ORG --WIyZ46R2i8wDzkSu Content-Type: text/plain; charset=us-ascii Content-Disposition: inline Content-Transfer-Encoding: quoted-printable > This is, because you have disabled syslogd. You should thinking about=20 > enabling it but protect it against external access using ipfiler or=20 > ipfirewall. Or use syslogd's -s option: syslogd(8) [...] -s Operate in secure mode. Do not log messages from remote machines. If specified twice, no network socket will be opened at all, which also disables logging to remote machines. [...] So,=20 syslogd_enable=3D"YES" syslogd_flags=3D"-s -s" should be right for your purpose. HTH, Simon --WIyZ46R2i8wDzkSu Content-Type: application/pgp-signature Content-Disposition: inline -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.2.1 (FreeBSD) iD8DBQE+c3+kCkn+/eutqCoRAoBWAJ4lccvvIOwEDPb87u+ZbGAOmnQRlwCg2BLE DvXSuMObCr3HjDj29WMFIbo= =Vjc+ -----END PGP SIGNATURE----- --WIyZ46R2i8wDzkSu-- To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-questions" in the body of the message