SSH logs

  • Looks ok here :) You can also change timestamp format in awk/strftime.

    Code
    [2019-06-04 14:49:25] Server listening on 0.0.0.0 port 22.
    [2019-06-04 14:49:25] Server listening on :: port 22.
    [2019-06-04 14:49:26] Accepted password for root from 192.68.1.2 port 56393 ssh2
    [2019-06-04 14:49:58] Failed password for root from 192.68.1.3 port 56405 ssh2
    [2019-06-04 14:49:58] Connection closed by authenticating user root 192.68.1.3 port 56405 [preauth]
    [2019-06-04 14:49:59] Failed password for root from 192.68.1.4 port 56407 ssh2
    [2019-06-04 14:49:59] Connection closed by authenticating user root 192.68.1.4 port 56407 [preauth]
  • Works for me as well :) Thanks a mill! :) Need to reboot to check if it will come back but wife watching TV now so not a chance :D

    Code
    [2019-06-04 16:56:26] Failed password for invalid user roo from 192.168.1.43 port 50718 ssh2
    [2019-06-04 16:56:26] Failed password for invalid user roo from 192.168.1.43 port 50718 ssh2
    [2019-06-04 16:56:29] Failed password for invalid user roo from 192.168.1.43 port 50718 ssh2
    [2019-06-04 16:56:29] Received disconnect from 192.168.1.43 port 50718:11: Normal Shutdown [preauth]
    [2019-06-04 16:56:29] Disconnected from invalid user roo 192.168.1.43 port 50718 [preauth]
    [2019-06-04 16:56:42] Accepted password for root from 192.168.1.43 port 50719 ssh2
    [2019-06-04 19:08:11] Accepted password for root from 192.168.1.43 port 52539 ssh2