1. Please take a little time for this simple survey! Thank you for participating!
    Dismiss Notice
  2. Dear Pleskians, please read this carefully! New attachments and other rules Thank you!
    Dismiss Notice
  3. Dear Pleskians, I really hope that you will share your opinion in this Special topic for chatter about Plesk in the Clouds. Thank you!
    Dismiss Notice

Global log file (Apache)

Discussion in 'Plesk for Linux - 8.x and Older' started by Brammeke, Nov 20, 2005.

  1. Brammeke

    Brammeke Guest

    0
     
    Hi,

    Can I create a "master log file" for Apache? I want all requests from all virtual hosts in there, as well as in their own (personal) logs. I think it's easy, but I can't seem to be able to manage it... :(

    Thank you,
    Bram
     
  2. hardweb

    hardweb Guest

    0
     
    You have such files in /var/log/httpd/*which gather all the log messages you do not have a log context setup in per site vhost directives. If you want just a file for ALL domains, you have to alter all httpd config files. Technically possible, but practically not a good solution.
     
  3. Brammeke

    Brammeke Guest

    0
     
    Hmm, I think a good, thought-thru grep command will help me I think.

    The problem is that one of our virtual host users has a leak, causing mass mails to be sent from our server. I want to track down which user is responsible, but I can't seem to find him. A Perl script is being smuggled in into /tmp, which starts downloading and sending the spam. How can I figure out which virtual host is leaking?

    Thank you,
    Bram
     
  4. matt.simpson

    matt.simpson Basic Pleskian

    25
     
    Joined:
    Sep 12, 2001
    Messages:
    94
    Likes Received:
    0
    Hey Bram,
    Ever find out an easy way to track this "leak" down, we have a similar issue.

    Best Regards,
    Matt Simpson
     
  5. Santi

    Santi Guest

    0
     
    Hello Brammeke,

    Try whit somthing like this:

    Code:
    grep -r "script" /var/www/vhosts/*/statistics/logs/access_log
    Regards,

    --
    Santi Saez
     
  6. servertune

    servertune Guest

    0
     
    First, you need to clean up your server from all the culprit script amatuer hackers or spammers managed to download and install on your server. Install mod_security and other security patches to prevent future attacks/hacks.
     
  7. Sins

    Sins Guest

    0
     
    The first thing you need to do is find wget on your server and change the permissions to 700, where only root can execute it. That is how they are putting files in your tmp folder.
     
Loading...