From: Kevin Z. <kev...@gm...> - 2015-02-03 01:22:38
|
Hi Barry, On 02/02/2015 18:59, Barry Muldrey wrote: > Does anyone know who's responsible for printing the "...via 10.0.1.100" > in the syslog message? > I presume it's there to tell me which interface the attack came in on > (for multiple LAN interface machines)? > Easiest work-around would be to turn off this portion of the message; > I've tried various LogLevels and SyslogFacilities in sshd_config to no > avail... You (and other people) are invited to test the attached patch. Let me know how it works! Thanks, Kevin Zheng -- Kevin Zheng kev...@gm... | ke...@kd... | PGP: 0xC22E1090 |