<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: User mail in Operating System - HP-UX</title>
    <link>https://community.hpe.com/t5/operating-system-hp-ux/user-mail/m-p/3741328#M740558</link>
    <description>hy, &lt;BR /&gt;&lt;BR /&gt;I monitor on lines in the /var/adm/syslog/syslog.log&lt;BR /&gt;Depening on how You normaly monitor your system you need a adisional script, tng, tivoly and hpopenview can be configured to monitor this lines.&lt;BR /&gt;the lines are:&lt;BR /&gt;&lt;BR /&gt;rexecd[28617]: read: Connection refused&lt;BR /&gt;DBLISTENER[28853]: .CADB_F_999 Pid=28853: Interrupted child process is being terminated&lt;BR /&gt; remshd[28952]: Connection from 0.0.0.0 on illegal port&lt;BR /&gt;telnetd[29024]: getpid: peer died: Error 0&lt;BR /&gt; ftpd[10504]: FTP LOGIN REFUSED (ftp not in /etc/passwd) FROM manual-1.1.1.1, anonymous&lt;BR /&gt;</description>
    <pubDate>Wed, 01 Mar 2006 04:05:53 GMT</pubDate>
    <dc:creator>F Verschuren</dc:creator>
    <dc:date>2006-03-01T04:05:53Z</dc:date>
    <item>
      <title>User mail</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/user-mail/m-p/3741327#M740557</link>
      <description>Hi everyone,&lt;BR /&gt;&lt;BR /&gt;I am wondering if anyone has put together a script that will monitor user mail for signs of anomolies such as an attack.  Thanks in advance for sharing!!!</description>
      <pubDate>Wed, 01 Mar 2006 00:03:27 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/user-mail/m-p/3741327#M740557</guid>
      <dc:creator>TheJuiceman</dc:creator>
      <dc:date>2006-03-01T00:03:27Z</dc:date>
    </item>
    <item>
      <title>Re: User mail</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/user-mail/m-p/3741328#M740558</link>
      <description>hy, &lt;BR /&gt;&lt;BR /&gt;I monitor on lines in the /var/adm/syslog/syslog.log&lt;BR /&gt;Depening on how You normaly monitor your system you need a adisional script, tng, tivoly and hpopenview can be configured to monitor this lines.&lt;BR /&gt;the lines are:&lt;BR /&gt;&lt;BR /&gt;rexecd[28617]: read: Connection refused&lt;BR /&gt;DBLISTENER[28853]: .CADB_F_999 Pid=28853: Interrupted child process is being terminated&lt;BR /&gt; remshd[28952]: Connection from 0.0.0.0 on illegal port&lt;BR /&gt;telnetd[29024]: getpid: peer died: Error 0&lt;BR /&gt; ftpd[10504]: FTP LOGIN REFUSED (ftp not in /etc/passwd) FROM manual-1.1.1.1, anonymous&lt;BR /&gt;</description>
      <pubDate>Wed, 01 Mar 2006 04:05:53 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/user-mail/m-p/3741328#M740558</guid>
      <dc:creator>F Verschuren</dc:creator>
      <dc:date>2006-03-01T04:05:53Z</dc:date>
    </item>
  </channel>
</rss>

