Skip to content

Latest commit

 

History

History
17 lines (15 loc) · 837 Bytes

2012-01-17-enabling-remote-logging.md

File metadata and controls

17 lines (15 loc) · 837 Bytes
ID post_title author post_date post_excerpt layout permalink published
322
Enabling remote logging
ytjohn
2012-01-17 03:11:20 -0800
post
true

I was experimenting with rsyslog to allow remote logging and within 20 minutes, I had two rogue log entries show up from random hosts.

Jan 17 05:00:23 64-181-24-18.unassigned.ntelos.net kernel: Configuring keys for mac:14:5a:05:ad:6b:cd, sc_hasclrkey is set Jan 17 05:01:05 64-181-24-18.unassigned.ntelos.net kernel: Configuring keys for mac:14:5a:05:ad:6b:cd, sc_hasclrkey is set

So what is interesting about this? I'm on comcast in PA. The host that sent this is on ntelos.net, or Lumos in (most likely) West Virginia. For some reason, a system there is sending a log message to my IP address. I just now am accepting it.