[Users] Re: Logging of logins via "vzctl enter"

2009-05-14 Thread fdb
Kir Kolyshkin ha scritto: > Please file the appropriate bug to http://bugzilla.openvz.org/. Please > set severity to "enhancement" and don't use the word ASAP :) Hi Kir, sorry for the "ASAP" but OpenVZ was not adopted from an important research centre here in Italy due to the lack of this securit

Re: [Users] Re: Logging of logins via "vzctl enter"

2009-05-13 Thread Gregor at HostGIS
Please file the appropriate bug to http://bugzilla.openvz.org/. Please set severity to "enhancement" and don't use the word ASAP :) Nicely done, Kir! Spoken like a true open-source man. :) -- HostGIS, Open Source solutions for the global GIS community Greg Allensworth - SysAdmin, Programmer, GI

Re: [Users] Re: Logging of logins via "vzctl enter"

2009-05-13 Thread Kir Kolyshkin
fdb wrote: Ralf ha scritto: Is it possible for the VPS admin to see whether and when the HN admin has entered the VPS (ie. via the 'vzctl enter' command). Is that logged somewhere in the logs of the VPS ? I think than should be implemented in the relative portion of ovz kernel thought

Re: [Users] Re: Logging of logins via "vzctl enter"

2009-05-13 Thread Gregor at HostGIS
If you don't trust the root user of your host node, I think you are in trouble. For me, it's not about trust but logging and completeness. I trust myself and our security, but having a more complete log of when the sysadmin stepped in would help our own auditing processes. I hope that it w

Re: [Users] Re: Logging of logins via "vzctl enter"

2009-05-13 Thread Scott Dowdle
FabioBD, - "fdb" wrote: > Ralf ha scritto: > > Is it possible for the VPS admin to see whether and when the HN admin > > has entered the VPS > > (ie. via the 'vzctl enter' command). > > Is that logged somewhere in the logs of the VPS ? > > I think than should be implemented in the relative p

[Users] Re: Logging of logins via "vzctl enter"

2009-05-13 Thread fdb
Ralf ha scritto: > Is it possible for the VPS admin to see whether and when the HN admin > has entered the VPS > (ie. via the 'vzctl enter' command). > Is that logged somewhere in the logs of the VPS ? I think than should be implemented in the relative portion of ovz kernel thought klogd. I hope