No timestamp in logs

Discuss and suggest new grsecurity features

No timestamp in logs

Postby xperience » Sun Sep 23, 2007 10:31 am

There no timestamps in grsecurity log messages. Is the way to add timestamps to it? Sometime it is imposible to guess when something happened. I don't have 24/7 control of server and 20mins mark from syslog doesn't satisfy me.
And btw... grsecurity messages are extremally long, giving huge amount of information in hard to read way (or to grep).

grsec: (default:D:/) use of CAP_SYS_ADMIN denied for /bin/dmesg[dmesg:1276] uid/euid:0/0 gid/egid:0/0, parent /bin/bash[bash:1259] uid/euid:0/0 gid/egid:0/0

can be easilly replaced with:
grsec: (default:D:/) CAP_SYS_ADMIN denied for /bin/dmesg[1276] (e)uid/:0/0 (e)gid:0/0, parent /bin/bash[1259] (e)uid:0/0 (e)gid:0/0

With regards
Xperience
xperience
 
Posts: 12
Joined: Wed Sep 12, 2007 3:42 pm

Return to grsecurity development