logcheck rules for ssh are not up to date

Bug #1259592 reported by Santiago M. Mola
6
This bug affects 1 person
Affects Status Importance Assigned to Milestone
logcheck
Fix Released
Unknown
logcheck (Ubuntu)
Confirmed
Low
Unassigned

Bug Description

On Ubuntu Precise, logcheck rules for SSH do not seem up to date. Examples of log messages that are not filtered but it seems they should:

subsystem request for sftp by user root
Received disconnect from 58.132.132.31: 11: Bye Bye [preauth]
Received disconnect from 82.221.102.182: 11: PECL/ssh2 (http://pecl.php.net/packages/ssh2) [preauth]
last message repeated 2 times
Disconnecting: Too many authentication failures for root [preauth]
input_userauth_request: invalid user foobar [preauth]
fatal: Read from socket failed: Connection reset by peer [preauth]

Changed in logcheck:
status: Unknown → Fix Committed
Santiago M. Mola (smola)
description: updated
Changed in logcheck (Ubuntu):
importance: Undecided → Low
Santiago M. Mola (smola)
description: updated
Changed in logcheck:
status: Fix Committed → Fix Released
Revision history for this message
Launchpad Janitor (janitor) wrote :

Status changed to 'Confirmed' because the bug affects multiple users.

Changed in logcheck (Ubuntu):
status: New → Confirmed
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.