Re: periodic security run output gives false positives after 1 year

2012-02-16 Thread Sergey Kandaurov
2012/2/16 Miroslav Lachman <000.f...@quip.cz>: > Hi, > > I see it many times before, but never take a time to post about it. > > Scrips in /etc/periodic are grepping logs for yesterday date, but without > specifying year (because some logs do not have year logged). > > This results in false positiv

Re: periodic security run output gives false positives after 1 year

2012-02-16 Thread Glen Barber
On Thu, Feb 16, 2012 at 06:59:54PM +0100, Miroslav Lachman wrote: > Glen Barber wrote: > > On Thu, Feb 16, 2012 at 06:04:34PM +0100, Miroslav Lachman wrote: > >> Hi, > >> > >> I see it many times before, but never take a time to post about it. > >> > >> Scrips in /etc/periodic are grepping logs for

Re: periodic security run output gives false positives after 1 year

2012-02-16 Thread Miroslav Lachman
Glen Barber wrote: On Thu, Feb 16, 2012 at 06:04:34PM +0100, Miroslav Lachman wrote: Hi, I see it many times before, but never take a time to post about it. Scrips in /etc/periodic are grepping logs for yesterday date, but without specifying year (because some logs do not have year logged). T

Re: periodic security run output gives false positives after 1 year

2012-02-16 Thread Glen Barber
On Thu, Feb 16, 2012 at 06:04:34PM +0100, Miroslav Lachman wrote: > Hi, > > I see it many times before, but never take a time to post about it. > > Scrips in /etc/periodic are grepping logs for yesterday date, but > without specifying year (because some logs do not have year logged). > > This r

periodic security run output gives false positives after 1 year

2012-02-16 Thread Miroslav Lachman
Hi, I see it many times before, but never take a time to post about it. Scrips in /etc/periodic are grepping logs for yesterday date, but without specifying year (because some logs do not have year logged). This results in false positive alerts in security e-mails from our lightly loaded ser