<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Multiple /dev/log sockets with syslogd - for chroot environments in Operating System - HP-UX</title>
    <link>https://community.hpe.com/t5/operating-system-hp-ux/multiple-dev-log-sockets-with-syslogd-for-chroot-environments/m-p/3915241#M285147</link>
    <description>Simon,&lt;BR /&gt;from the ssh guide:&lt;BR /&gt;"In a chroot-ed environment, users do not see a subset of syslogmessages. HP-UX Secure Shell writes syslog messages at the time of authentication and when the session is terminated. The syslogddaemon reads the syslog messages written by all subsystems andreports it to the /dev/log file. In a chroot-ed environment, the sshddaemon writes its syslog messages to &lt;NEWROOT&gt;/dev/log. It is notpossible to link the &lt;NEWROOT&gt;/dev/log file to the /dev/log file,resulting in users not being able to view the subset of syslogmessages.Workaround: There is no workaround for this problem. Users of chroot-ed HP-UX Secure Shell environments must be aware that a subset of messages written by the sshd daemon will not show up in syslog."&lt;BR /&gt;&lt;BR /&gt;So I read this that it is not possible.&lt;/NEWROOT&gt;&lt;/NEWROOT&gt;</description>
    <pubDate>Tue, 19 Dec 2006 07:54:17 GMT</pubDate>
    <dc:creator>Peter Godron</dc:creator>
    <dc:date>2006-12-19T07:54:17Z</dc:date>
    <item>
      <title>Multiple /dev/log sockets with syslogd - for chroot environments</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/multiple-dev-log-sockets-with-syslogd-for-chroot-environments/m-p/3915240#M285146</link>
      <description>Hi, I'm using sftp in a chroot environment, and logging the transfers with the LogSftp yes option in sshd_config.&lt;BR /&gt;&lt;BR /&gt;This logging works fine in normal sftp transfers, but doesn't when running sftp to a chroot user.  In Linux this can be fixed by passing "-a /chroot/path/var/log" to syslogd to give it an extra socket to read from, however hpux only seems to have a -p switch to allow "an alternative" socket rather than multiple.&lt;BR /&gt;&lt;BR /&gt;Is there any way to achieve this with hpux syslogd?  I don't think running multiple syslogd's is the answer since we'll likely get duplicate messages from the kernel etc.&lt;BR /&gt;&lt;BR /&gt;The syslog requirement is detailed here: -&lt;BR /&gt;&lt;BR /&gt;&lt;A href="http://sftplogging.sourceforge.net/download/README" target="_blank"&gt;http://sftplogging.sourceforge.net/download/README&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;But as said this works on Linux but not on HPUX from what I can see.</description>
      <pubDate>Tue, 19 Dec 2006 07:26:52 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/multiple-dev-log-sockets-with-syslogd-for-chroot-environments/m-p/3915240#M285146</guid>
      <dc:creator>Simon Hargrave</dc:creator>
      <dc:date>2006-12-19T07:26:52Z</dc:date>
    </item>
    <item>
      <title>Re: Multiple /dev/log sockets with syslogd - for chroot environments</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/multiple-dev-log-sockets-with-syslogd-for-chroot-environments/m-p/3915241#M285147</link>
      <description>Simon,&lt;BR /&gt;from the ssh guide:&lt;BR /&gt;"In a chroot-ed environment, users do not see a subset of syslogmessages. HP-UX Secure Shell writes syslog messages at the time of authentication and when the session is terminated. The syslogddaemon reads the syslog messages written by all subsystems andreports it to the /dev/log file. In a chroot-ed environment, the sshddaemon writes its syslog messages to &lt;NEWROOT&gt;/dev/log. It is notpossible to link the &lt;NEWROOT&gt;/dev/log file to the /dev/log file,resulting in users not being able to view the subset of syslogmessages.Workaround: There is no workaround for this problem. Users of chroot-ed HP-UX Secure Shell environments must be aware that a subset of messages written by the sshd daemon will not show up in syslog."&lt;BR /&gt;&lt;BR /&gt;So I read this that it is not possible.&lt;/NEWROOT&gt;&lt;/NEWROOT&gt;</description>
      <pubDate>Tue, 19 Dec 2006 07:54:17 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/multiple-dev-log-sockets-with-syslogd-for-chroot-environments/m-p/3915241#M285147</guid>
      <dc:creator>Peter Godron</dc:creator>
      <dc:date>2006-12-19T07:54:17Z</dc:date>
    </item>
    <item>
      <title>Re: Multiple /dev/log sockets with syslogd - for chroot environments</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/multiple-dev-log-sockets-with-syslogd-for-chroot-environments/m-p/3915242#M285148</link>
      <description>Simon,&lt;BR /&gt;thanks for the points.&lt;BR /&gt;&lt;BR /&gt;"4- 7: The answer helped with a portion of my question, but I still need some additional help!"&lt;BR /&gt;&lt;BR /&gt;What part of the question do you need further help with ? Please keep the thread updated, so people can respond quickly.&lt;BR /&gt;</description>
      <pubDate>Wed, 20 Dec 2006 05:09:26 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/multiple-dev-log-sockets-with-syslogd-for-chroot-environments/m-p/3915242#M285148</guid>
      <dc:creator>Peter Godron</dc:creator>
      <dc:date>2006-12-20T05:09:26Z</dc:date>
    </item>
    <item>
      <title>Re: Multiple /dev/log sockets with syslogd - for chroot environments</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/multiple-dev-log-sockets-with-syslogd-for-chroot-environments/m-p/3915243#M285149</link>
      <description>Hi&lt;BR /&gt;&lt;BR /&gt;I didn't give a "The answer has solved my problem completely! Now I'm a happy camper!" because it's still technically possible for someone to come up with ideas or workarounds - the present answer is so defeatist :D  Whilst that document says it's not possible, that document clearly applies to the HPUX syslogd since it is a restriction of that particular implementation of syslog that can only read from one /dev/log.&lt;BR /&gt;&lt;BR /&gt;Someone for example may report that they have compiled and used GNU syslogd for example, or used some third-party tool or script that can read messages from /newroot/dev/log socket and replicate them into the real /dev/log.&lt;BR /&gt;&lt;BR /&gt;Have some more points anyway :D</description>
      <pubDate>Thu, 21 Dec 2006 06:31:21 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/multiple-dev-log-sockets-with-syslogd-for-chroot-environments/m-p/3915243#M285149</guid>
      <dc:creator>Simon Hargrave</dc:creator>
      <dc:date>2006-12-21T06:31:21Z</dc:date>
    </item>
  </channel>
</rss>

