"User child is on pid"-logging

Claes Leufven rinsan at lysator.liu.se
Fri Dec 9 00:54:17 EST 2005


Hi!

I sent a mail a while ago wondering if it was possible to change the
loglevel for the "User child is on pid"-message from debug2 to
verbose. It would make it easier to trace a connection in the logs
when privilege separation is used and sshd uses the user child pid to
report that the connection is closing . Is it possible to change this
or would it violate the privacy of the users?

Regards
Claes Leufvén

Here is a patch for the latest(20051208) snapshot of OpenSSH portable:

--- sshd.c-orig 2005-12-08 14:35:03.000000000 +0100
+++ sshd.c      2005-12-08 14:35:11.000000000 +0100
@@ -651,7 +651,7 @@
        if (pmonitor->m_pid == -1)
                fatal("fork of unprivileged child failed");
        else if (pmonitor->m_pid != 0) {
-               debug2("User child is on pid %ld", (long)pmonitor->m_pid);
+               verbose("User child is on pid %ld", (long)pmonitor->m_pid);
                close(pmonitor->m_recvfd);
                buffer_clear(&loginmsg);
                monitor_child_postauth(pmonitor);

-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 185 bytes
Desc: not available
Url : http://lists.mindrot.org/pipermail/openssh-unix-dev/attachments/20051208/99b601d1/attachment.bin 


More information about the openssh-unix-dev mailing list