From: Jos C. <ssh...@cl...> - 2017-07-21 14:32:12
|
Can you tell me what the purpose is of these lines: --- cut --- Jul 21 16:26:29 ares kernel: Jul 21 16:26:29 ares sshguard[60128]: Attack from "58.19.14.52" on service 260 with danger 10. Jul 21 16:26:29 ares kernel: Jul 21 16:26:29 ares sshguard[68586]: Attack from "58.19.14.52" on service 260 with danger 10. Jul 21 16:26:29 ares sshguard[9447]: 58.19.14.52 has already been blocked --- cut --- In my opinion the third line should be the first line as that was a fact before the ip in the first line entered my location? With that, both current first lines are to rule out (unnecessary information as the ip was blocked anyway)? Perhaps I don't understand. regards, Jos Chrispijn -- With both feed on the ground you will never make a step forward |