>All failed login are logged in /etc/security/failedlogin. Is there
>any way to record the account from which the login was attempted,
>as well as the node?
Auditing can be used. mail me a note if you want more info on
auditing.
> On a similar note, can ftp record the username given during an
>of the person using anonymous ftp?
I don't know about the ftp stuff, because the password is what is
used as the id, so I don't know wether that is kept or thrown away?
Later,
Julie
--
*=*=*=*=*=*=*=*=*=*=*=*=*=*=*=*=*=*=*=*=*=*=*=*=*=*=*=*=*=*=*=*=*=*=*=*
IBMNET: JULIEL at AUSVMQ 2F-007/903 (512) 838-2677 (Tie 678-2677)
"I'm not getting defensive!"