Hi all,
given the prevalence of attempted attacks on my test server using various username/password combinations with ssh, I am curious if there are logs to record such activities? I am using Redhat Linux 9.0.
check your /var/log/messages for lines like this:
Dec 1 15:10:03 charlie sshd(pam_unix)[2510]: authentication failure; logname= uid=0 euid=0 tty=NODEVssh ruser= rhost=localhost.localdomain
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.