R
rjcain
Guest
Hi,
Plesk watchdog (rkhunter) seems to be misreporting a warning whilst all details and log entries show everything is OK::
navigate to:: Plesk, modules, watchdog, security, start (rkhunter) scan ::
returns message:: "Warning: Scanning completed at Nov 24, 2010 11:26 AM. Considerable existing/potential security problems were detected in the system. For details, see the log below."
BUT:: details show all tests are OK, ie::
"
System checks summary
=====================
File properties checks...
Files checked: 127
Suspect files: 0
Rootkit checks...
Rootkits checked : 118
Possible rootkits: 0
Applications checks...
Applications checked: 8
Suspect applications: 0
The system checks took: 45 seconds
All results have been written to the logfile (/var/log/rkhunter.log)
No warnings were found while checking the system.
"
ALSO, /var/log/rkhunter.log contains no warnings or errors.
I have spent much time ensuring no false positives are returned by editing whitelists in /usr/local/psa/etc/modules/watchdog/rkhunter.conf, as well as making sure all os components are up to data via yum (no errors), yet plesk warning message still comes up (hence i will still be emailed with warnings).
Please could someone tell me how to get this 'OK' condition reported correctly (ie. i can see no detailed warnings or errors to cause this top level warning message.)
config details are::
product version: 9.5.2
operating system details: CentOS 5
Plesk build: 95100504.10
Thanks for any help you can.
Plesk watchdog (rkhunter) seems to be misreporting a warning whilst all details and log entries show everything is OK::
navigate to:: Plesk, modules, watchdog, security, start (rkhunter) scan ::
returns message:: "Warning: Scanning completed at Nov 24, 2010 11:26 AM. Considerable existing/potential security problems were detected in the system. For details, see the log below."
BUT:: details show all tests are OK, ie::
"
System checks summary
=====================
File properties checks...
Files checked: 127
Suspect files: 0
Rootkit checks...
Rootkits checked : 118
Possible rootkits: 0
Applications checks...
Applications checked: 8
Suspect applications: 0
The system checks took: 45 seconds
All results have been written to the logfile (/var/log/rkhunter.log)
No warnings were found while checking the system.
"
ALSO, /var/log/rkhunter.log contains no warnings or errors.
I have spent much time ensuring no false positives are returned by editing whitelists in /usr/local/psa/etc/modules/watchdog/rkhunter.conf, as well as making sure all os components are up to data via yum (no errors), yet plesk warning message still comes up (hence i will still be emailed with warnings).
Please could someone tell me how to get this 'OK' condition reported correctly (ie. i can see no detailed warnings or errors to cause this top level warning message.)
config details are::
product version: 9.5.2
operating system details: CentOS 5
Plesk build: 95100504.10
Thanks for any help you can.