in /var/log mi trovo:
1) file auth.log enorme da circa 45mb
Codice: Seleziona tutto
Sep 13 13:46:46 raspberrypi sudo: pam_unix(sudo:session): session closed for user root
Sep 13 13:46:46 raspberrypi sudo: root : TTY=unknown ; PWD=/root ; USER=root ; COMMAND=/usr/local/bin/eflowlive selfc
Sep 13 13:46:46 raspberrypi sudo: pam_unix(sudo:session): session opened for user root by (uid=0)
Sep 13 13:46:47 raspberrypi sudo: pam_unix(sudo:session): session closed for user root
Sep 13 13:46:47 raspberrypi sudo: root : TTY=unknown ; PWD=/root ; USER=root ; COMMAND=/usr/local/bin/eflowlive whin
Sep 13 13:46:47 raspberrypi sudo: pam_unix(sudo:session): session opened for user root by (uid=0)
Sep 13 13:46:47 raspberrypi sudo: pam_unix(sudo:session): session closed for user root
Sep 13 13:46:48 raspberrypi sudo: root : TTY=unknown ; PWD=/root ; USER=root ; COMMAND=/usr/local/bin/eflowlive whout grep ^4\(.*W\)
Sep 13 13:46:48 raspberrypi sudo: pam_unix(sudo:session): session opened for user root by (uid=0)
Sep 13 13:46:48 raspberrypi sudo: pam_unix(sudo:session): session closed for user root
Sep 13 13:46:51 raspberrypi CRON[792]: pam_unix(cron:session): session closed for user root
Sep 13 13:46:53 raspberrypi CRON[795]: pam_unix(cron:session): session closed for user root
Sep 13 13:46:56 raspberrypi sshd[3712]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=116.31.116.15 user=root
Sep 13 13:46:58 raspberrypi sshd[3712]: Failed password for root from 116.31.116.15 port 11881 ssh2
2) file btm da 4.6mb
Codice: Seleziona tutto
L ssh:notty root 116.31.xxx -Dš[ tt ™Z ssh:notty root 116.31.xxx gDš[ tt ™Z ssh:notty root 116.31.xxx jDš[ tt ™Z ssh:notty root 116.31..XXX >Oš[ tt
3) file daemon.log enorme da 74,3mb
Codice: Seleziona tutto
Sep 13 13:53:50 raspberrypi cron[384]: sendmail: authentication failed (method PLAIN)
Sep 13 13:53:50 raspberrypi cron[384]: sendmail: server message: 535-5.7.8 Username and Password not accepted. Learn more at
Sep 13 13:53:50 raspberrypi cron[384]: sendmail: server message: 535 5.7.8 https://support.google.com/mail/?p=BadCredentials k63-v6sm6512282wmd.46 - gsmtp
Sep 13 13:53:50 raspberrypi cron[384]: sendmail: could not send mail (account default from /etc/msmtprc)
Sep 13 13:53:51 raspberrypi fail2ban-client[27408]: ERROR No file(s) found for glob /var/log/domoticz.log
Sep 13 13:53:51 raspberrypi fail2ban-client[27408]: ERROR Failed during configuration: Have not found any log file for domoticz jail
Sep 13 13:53:52 raspberrypi systemd[1]: fail2ban.service: Control process exited, code=exited status=255
Sep 13 13:53:52 raspberrypi systemd[1]: Failed to start Fail2Ban Service.
Sep 13 13:53:52 raspberrypi systemd[1]: fail2ban.service: Unit entered failed state.
Sep 13 13:53:52 raspberrypi systemd[1]: fail2ban.service: Failed with result 'exit-code'.
Sep 13 13:53:52 raspberrypi systemd[1]: fail2ban.service: Service hold-off time over, scheduling restart.
Sep 13 13:53:52 raspberrypi systemd[1]: Stopped Fail2Ban Service.
Sep 13 13:53:52 raspberrypi systemd[1]: Starting Fail2Ban Service...
4) syslog da 10mb
Codice: Seleziona tutto
Sep 13 13:56:28 raspberrypi systemd[1]: Failed to start Fail2Ban Service.
Sep 13 13:56:28 raspberrypi systemd[1]: fail2ban.service: Unit entered failed state.
Sep 13 13:56:28 raspberrypi systemd[1]: fail2ban.service: Failed with result 'exit-code'.
Sep 13 13:56:28 raspberrypi systemd[1]: fail2ban.service: Service hold-off time over, scheduling restart.
Sep 13 13:56:28 raspberrypi systemd[1]: Stopped Fail2Ban Service.
Sep 13 13:56:28 raspberrypi systemd[1]: Starting Fail2Ban Service...
Sep 13 13:56:28 raspberrypi cron[384]: sendmail: authentication failed (method PLAIN)
Sep 13 13:56:28 raspberrypi cron[384]: sendmail: server message: 535-5.7.8 Username and Password not accepted. Learn more at
Sep 13 13:56:28 raspberrypi cron[384]: sendmail: server message: 535 5.7.8 https://support.google.com/mail/?p=BadCredentials j75-v6sm4833997wmj.8 - gsmtp
Sep 13 13:56:28 raspberrypi cron[384]: sendmail: could not send mail (account default from /etc/msmtprc)
Sep 13 13:56:28 raspberrypi CRON[2899]: (root) MAIL (mailed 59 bytes of output but got status 0x004d from MTA#012)
ed infine in /var/log/apache2
ho access.log e error.log ma sono piccolini da circa 90kb
in totale, come memoria siamo a:
Used: 1.98GB (87.19%) Free: 298.53MB Total: 2.28GB
ed ho già fatto pulizia dei due log da 40mb e 70mb (nel senso che nel conto sopra li ho già tolti)
mi sono accorto che c'è anche un file in /var che si chiama ram_log.tar.gz da 7.5mb si può cancellare?
ps. tutti i file con XXX.1 li posso cancellare? ad esempio auth.log.1 oppure daemon.log.1 ecc ecc ed anche i loro XXXX.gz senza fare danni?!?!