1 |
On Thursday 07 July 2005 19:32, A. Khattri wrote: |
2 |
> On Thu, 7 Jul 2005, Michael Thompson wrote: |
3 |
> > I am trying to extract information in my logs for a abuse department and |
4 |
> > am using the code: |
5 |
> > |
6 |
> > Code: |
7 |
> > |
8 |
> > zcat /var/log/messages.*?.gz | grep 212.56.68.108 >> /home/mike/abuse1 |
9 |
> > |
10 |
> > The logs are standard: messages.??.gz |
11 |
> > |
12 |
> > However, when I examine the output, it starts on the 1st may, however the |
13 |
> > logs contain details from the 25th Febuary. What am I doing wrong? |
14 |
> |
15 |
> Show us some sample log lines. |
16 |
|
17 |
Apr 24 06:39:51 polaris INPUT BLOCKED: IN=eth1 OUT= |
18 |
MAC=00:09:5b:1f:16:42:06:05:5d:9f:a3:74:08:00 SRC=212.56.68.108 |
19 |
DST=212.159.25.17 LEN=71 TOS=0x00 PREC=0xA0 TTL=58 ID=0 DF PROTO=UDP |
20 |
SPT=46245 DPT=161 LEN=51 |
21 |
|
22 |
|
23 |
-- |
24 |
Mike |
25 |
|
26 |
To see the world in a grain of sand, |
27 |
and to see heaven in a wild flower, |
28 |
hold infinity in the palm of your hands, |
29 |
and eternity in an hour. |
30 |
|
31 |
GnuGPG KeyID:=FC0D8D9A |
32 |
-- |
33 |
gentoo-user@g.o mailing list |