+ Responder ao Tópico



  1. #1

    Padrão conexão virtua cai toda hora

    Galera!

    Muita boa tarde, estou com um problema que ainda não sei como resolver.

    Minha conexão virtua cai toda hora, e depois de algumas hora verificando os log, percebi que após algumas tentativas de acesso não autorizados o linnk cai, e tenho que reiniciar o micro.

    segue abaixo parte do syslog

    Oct 18 12:59:37 localhost sshd[2016]: Connection from 211.157.97.11 port 40763
    Oct 18 12:59:41 localhost sshd[2016]: Illegal user guest from 211.157.97.11
    Oct 18 12:59:42 localhost sshd[2018]: Connection from 211.157.97.11 port 40840
    Oct 18 12:59:45 localhost sshd[2018]: Illegal user admin from 211.157.97.11
    Oct 18 12:59:46 localhost sshd[2020]: Connection from 211.157.97.11 port 40919
    Oct 18 12:59:50 localhost sshd[2020]: Illegal user admin from 211.157.97.11
    Oct 18 12:59:51 localhost sshd[2022]: Connection from 211.157.97.11 port 40996
    Oct 18 12:59:55 localhost sshd[2022]: Illegal user user from 211.157.97.11
    Oct 18 12:59:56 localhost sshd[2024]: Connection from 211.157.97.11 port 41084
    Oct 18 13:00:00 localhost sshd[2024]: User root not allowed because none of user's groups are listed in AllowGroups
    Oct 18 13:00:01 localhost sshd[2026]: Connection from 211.157.97.11 port 41173
    Oct 18 13:00:05 localhost sshd[2026]: User root not allowed because none of user's groups are listed in AllowGroups
    Oct 18 13:00:06 localhost sshd[2028]: Connection from 211.157.97.11 port 41264
    Oct 18 13:00:10 localhost sshd[2028]: User root not allowed because none of user's groups are listed in AllowGroups
    Oct 18 13:00:11 localhost sshd[2030]: Connection from 211.157.97.11 port 41345
    Oct 18 13:00:15 localhost sshd[2030]: Illegal user test from 211.157.97.11
    Oct 18 13:02:26 localhost named[1611]: Cleaned cache of 210 RRsets
    Oct 18 13:02:26 localhost named[1611]: USAGE 1161183746 1161180146 CPU=0.22u/0.09s CHILDCPU=0u/0s
    Oct 18 13:02:26 localhost named[1611]: NSTATS 1161183746 1161180146 A=470 SOA=40 PTR=3 SRV=1
    Oct 18 13:02:26 localhost named[1611]: XSTATS 1161183746 1161180146 RR=1012 RNXD=24 RFwdR=303 RDupR=0 RFail=0 RFErr=108 RErr=0
    RAXFR=0 RLame=0 ROpts=0 SSysQ=165 SAns=466 SFwdQ=436 SDupQ=125 SErr=0 RQ=514 RIQ=0 RFwdQ=436 RDupQ=0 RTCP=0 SFwdR=303 SFail=5
    SFErr=0 SNaAns=466 SNXD=81 RUQ=0 RURQ=0 RUXFR=0 RUUpd=0
    Oct 18 13:17:01 localhost /USR/SBIN/CRON[2035]: (root) CMD ( run-parts --report /etc/cron.hourly)
    Oct 18 13:41:44 localhost -- MARK --
    Oct 18 14:01:44 localhost -- MARK --
    Oct 18 14:02:26 localhost named[1611]: Cleaned cache of 279 RRsets
    Oct 18 14:02:26 localhost named[1611]: USAGE 1161187346 1161180146 CPU=0.28u/0.1s CHILDCPU=0u/0s
    Oct 18 14:02:26 localhost named[1611]: NSTATS 1161187346 1161180146 A=828 SOA=60 PTR=3 SRV=1
    Oct 18 14:02:26 localhost named[1611]: XSTATS 1161187346 1161180146 RR=1691 RNXD=45 RFwdR=484 RDupR=16 RFail=0 RFErr=168 RErr=
    0 RAXFR=0 RLame=0 ROpts=0 SSysQ=232 SAns=833 SFwdQ=791 SDupQ=208 SErr=0 RQ=892 RIQ=0 RFwdQ=791 RDupQ=0 RTCP=0 SFwdR=484 SFail=
    5 SFErr=0 SNaAns=833 SNXD=121 RUQ=0 RURQ=0 RUXFR=0 RUUpd=0
    Oct 18 14:13:30 localhost ddclient[1645]: WARNING: cannot connect to checkip.dyndns.org:80 socket: IO::Socket::INET: Bad host
    name 'checkip.dyndns.org'
    Oct 18 14:17:01 localhost /USR/SBIN/CRON[2040]: (root) CMD ( run-parts --report /etc/cron.hourly)
    Oct 18 15:20:16 localhost syslogd 1.4.1#16: restart.

    Oct 18 15:20:16 localhost kernel: klogd 1.4.1#16, log source = /proc/kmsg started.
    Oct 18 15:20:16 localhost kernel: Inspecting /boot/System.map-2.4.27-2-386
    Oct 18 15:20:17 localhost kernel: Loaded 18322 symbols from /boot/System.map-2.4.27-2-386.
    Oct 18 15:20:17 localhost kernel: Symbols match kernel version 2.4.27.
    Oct 18 15:20:17 localhost kernel: Loaded 636 symbols from 23 modules.
    Oct 18 15:20:17 localhost kernel: Linux version 2.4.27-2-386 ([email protected]) (gcc version 3.3.5 (Debian 1:
    3.3.5-6)) #1 Thu Jan 20 10:55:08 JST 2005
    Oct 18 15:20:17 localhost kernel: BIOS-provided physical RAM map:
    Oct 18 15:20:17 localhost kernel: BIOS-e820: 0000000000000000 - 000000000009fc00 (usable)


    muito obrigado pela atenção.

    Boa tarde a todos.

  2. #2

    Padrão Re: conexão virtua cai toda hora

    ainda executei o comando, last -x e percebi que está havendo constante mudanças runlevel e logo após há o reinicio do sistema.

    ziclague pts/0 200.244.62.189 Wed Oct 18 15:25 still logged in
    runlevel (to lvl 2) 2.4.27-2-386 Wed Oct 18 15:20 - 15:59 (00:38)
    reboot system boot 2.4.27-2-386 Wed Oct 18 15:20 (00:38)
    ziclague pts/0 200.244.62.189 Wed Oct 18 12:07 - crash (03:12)
    runlevel (to lvl 2) 2.4.27-2-386 Wed Oct 18 12:01 - 15:20 (03:18)
    reboot system boot 2.4.27-2-386 Wed Oct 18 12:01 (03:57)
    ziclague pts/0 200.244.62.189 Wed Oct 18 09:27 - crash (02:34)
    runlevel (to lvl 2) 2.4.27-2-386 Wed Oct 18 08:52 - 12:01 (03:09)
    reboot system boot 2.4.27-2-386 Wed Oct 18 08:52 (07:06)
    runlevel (to lvl 2) 2.4.27-2-386 Tue Oct 17 18:26 - 08:52 (14:25)
    reboot system boot 2.4.27-2-386 Tue Oct 17 18:26 (21:32)
    runlevel (to lvl 2) 2.4.27-2-386 Tue Oct 17 15:05 - 18:26 (03:21)
    reboot system boot 2.4.27-2-386 Tue Oct 17 15:05 (1+00:53)
    runlevel (to lvl 2) 2.4.27-2-386 Tue Oct 17 11:42 - 15:05 (03:23)
    reboot system boot 2.4.27-2-386 Tue Oct 17 11:42 (1+04:16)
    runlevel (to lvl 2) 2.4.27-2-386 Tue Oct 17 08:38 - 11:42 (03:03)
    reboot system boot 2.4.27-2-386 Tue Oct 17 08:38 (1+07:20)
    runlevel (to lvl 2) 2.4.27-2-386 Mon Oct 16 18:26 - 08:38 (14:12)
    reboot system boot 2.4.27-2-386 Mon Oct 16 18:26 (1+21:33)
    runlevel (to lvl 2) 2.4.27-2-386 Mon Oct 16 15:18 - 18:26 (03:08)
    reboot system boot 2.4.27-2-386 Mon Oct 16 15:18 (2+00:41)
    runlevel (to lvl 2) 2.4.27-2-386 Mon Oct 16 12:08 - 15:18 (03:09)
    reboot system boot 2.4.27-2-386 Mon Oct 16 12:08 (2+03:50)
    runlevel (to lvl 2) 2.4.27-2-386 Mon Oct 16 09:04 - 12:08 (03:04)
    reboot system boot 2.4.27-2-386 Mon Oct 16 09:04 (2+06:54)
    runlevel (to lvl 2) 2.4.27-2-386 Sat Oct 14 13:06 - 09:04 (1+18:58)
    reboot system boot 2.4.27-2-386 Sat Oct 14 13:06 (4+01:52)
    runlevel (to lvl 2) 2.4.27-2-386 Sat Oct 14 09:51 - 13:06 (03:14)
    reboot system boot 2.4.27-2-386 Sat Oct 14 09:51 (4+05:07)
    runlevel (to lvl 2) 2.4.27-2-386 Sat Oct 14 06:46 - 09:51 (03:05)
    reboot system boot 2.4.27-2-386 Sat Oct 14 06:46 (4+08:12)
    runlevel (to lvl 2) 2.4.27-2-386 Fri Oct 13 17:12 - 06:46 (13:33)
    reboot system boot 2.4.27-2-386 Fri Oct 13 17:12 (4+21:46)
    runlevel (to lvl 2) 2.4.27-2-386 Fri Oct 13 13:55 - 17:12 (03:16)
    reboot system boot 2.4.27-2-386 Fri Oct 13 13:55 (5+01:03)
    runlevel (to lvl 2) 2.4.27-2-386 Fri Oct 13 10:50 - 13:55 (03:05)
    reboot system boot 2.4.27-2-386 Fri Oct 13 10:50 (5+04:08)
    runlevel (to lvl 2) 2.4.27-2-386 Fri Oct 13 07:47 - 10:50 (03:03)
    reboot system boot 2.4.27-2-386 Fri Oct 13 07:47 (5+07:11)