Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Chris Miller on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

What is Standard Format in terms /var/log/wtmp

Status
Not open for further replies.

itsp1965

IS-IT--Management
Dec 9, 2003
2,669
CA
As per my previous post, I have been also asked to ensure that the following files are in "Standard Format"

- /var/log/wtmp
- /var/log/messages

My question is what exactly does Standard Format refer to?
 
Standard Format" is a pretty ambiguous definition that I would turn right around and insist that the requesting party document fully for you before you spend even one more second thinking about it.

I could speculate that /var/log/messages - being a text file with layout control (potentially) - might be adjusted to "standard format" to ensure alignment with date formats for your preferred output style (yyyy/mm/dd, dd/mm/yyyy, etc.)

I suspect someone is talking out of their rear end by requesting a format for /var/log/wtmp - that is a binary formatted file that is not easily readable to humans. I fail to see whether you could or should attempt to "format" that file.

D.E.R. Management - IT Project Management Consulting
 
Thanks Thedaver, that's what I was tending to think also.. that they wanted something in a more "human readable" form
 
Actually Thedaver I found the following in regards to "Standard Format"

"std" -- standard format in syslog
"apache" -- standard format for apache access logs.
"apache-error" -- standard format for apache error logs.
"bru" -- standard format for 'bru' logs.
"smb" -- standard format for samba logs.
"wtmp" -- standard format used in the wtmp files
(viewed with 'last').

Therefore I am assuming I am in compliance since I can use the last command to display the /var/log/wtmp
 
Uh, well, I politely disagree if I understand the situation...

I found your cited text here:

Which is a site for a perl script that can parse the logs in their native formats and then reprocess that information for email to an admin.

I'm sure I see how your citation is evidence that you're "compliant" per se...

Let's presume your original post was that the files in /var/log/[log file name] had to be in a particular format. If so, my original post should stand.

If you are running the 'mail-logs.pl' script from which you cited the parameters in your previous post, then that's a BIG piece of information you neglected to include in this thread.

?????



D.E.R. Management - IT Project Management Consulting
 
You are correct Thedaver, unfortunately it was the only citing of what "standard format" refers to that I can immediately find. No more wasting time, I'll have to go back to the auditors to have them clarify.
Thank you for your help. It is greatly appreciated.
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top