<body><script type="text/javascript"> function setAttributeOnload(object, attribute, val) { if(window.addEventListener) { window.addEventListener('load', function(){ object[attribute] = val; }, false); } else { window.attachEvent('onload', function(){ object[attribute] = val; }); } } </script> <div id="navbar-iframe-container"></div> <script type="text/javascript" src="https://apis.google.com/js/platform.js"></script> <script type="text/javascript"> gapi.load("gapi.iframes:gapi.iframes.style.bubble", function() { if (gapi.iframes && gapi.iframes.getContext) { gapi.iframes.getContext().openChild({ url: 'https://www.blogger.com/navbar.g?targetBlogID\x3d32370122\x26blogName\x3d.%3EGhufron+Aje%3E%3E%3E\x26publishMode\x3dPUBLISH_MODE_BLOGSPOT\x26navbarType\x3dBLUE\x26layoutType\x3dCLASSIC\x26searchRoot\x3dhttps://guf-t.blogspot.com/search\x26blogLocale\x3den_US\x26v\x3d2\x26homepageUrl\x3dhttp://guf-t.blogspot.com/\x26vt\x3d-848752436076766533', where: document.getElementById("navbar-iframe-container"), id: "navbar-iframe" }); } }); </script>
Thursday, February 23, 2012
Cara Mengetahui Aktifitas User dan Log History Linux
Untuk mengetahui aktiftas user yang login di linux bisa kita cek dengan berbagai cara,
berikut ini cara2 yang bisa digunakan.
1. Begitu ssh, langsung liat last login, disitu ketauan IP mana yang terakhir kali masuk ke sistem kita :
Last login: Fri Feb 10 09:25:31 2012 from slp-ghuft-cist
2. melihat User dengan W or WHO
[root@tax ~]# w
13:51:11 up 26 days, 21:01, 1 user, load average: 0.00, 0.00, 0.00
USER TTY FROM LOGIN@ IDLE JCPU PCPU WHAT
root pts/0 slp-ghuft-cist 13:49 0.00s 0.03s 0.01s w
[root@tax ~]# who
root pts/0 2012-02-23 13:49 (slp-ghuft-cist)
3. Bisa juga dengan ps aux
[root@tax ~]# ps aux |grep bash |grep pts
root 26151 0.0 0.0 4768 1460 pts/0 Ss 13:49 0:00 -bash
root 26278 0.0 0.0 4016 672 pts/0 R+ 13:53 0:00 grep bash
[root@tax ~]#
4. Melihat aktifitas terakhir dari semua user "lastlog"
5. Menggunakan tools bantuan "fingger" tetapi harus di install
Kalo mau liat User yang ada
# cat /etc/passwd
# cat /etc/group
atau
# getent passwd
# getent group
6. vi /var/log/wtmp
7. vi .bash_history
8. tail -f /var/log/messages
 
posted by ghufron at 1:48 PM | Permalink |


0 Comments: