Code: Select all
Dec 1 17:27:03 server cessing: nss_ldap: could not search LDAP server - Server is unavailable
Dec 1 17:29:03 server cessing: nss_ldap: could not get LDAP result - Can't contact LDAP server
Dec 1 17:29:03 server cessing: nss_ldap: could not get LDAP result - Can't contact LDAP server
Dec 1 17:30:10 server cessing: nss_ldap: could not get LDAP result - Can't contact LDAP server
Dec 1 17:30:10 server cessing: nss_ldap: could not search LDAP server - Server is unavailable
Dec 1 17:32:26 server cessing: nss_ldap: could not get LDAP result - Can't contact LDAP server
Dec 1 17:32:26 server cessing: nss_ldap: could not get LDAP result - Can't contact LDAP server
Dec 1 17:33:34 server cessing: nss_ldap: could not get LDAP result - Can't contact LDAP server
Dec 1 17:33:34 server cessing: nss_ldap: could not search LDAP server - Server is unavailable
If AT_ALERT is set to 2 and the script finds an account with a uid of 0 shouldn't the loop just end? It seems unnecessary to keep looping through the rest of the accounts.
Also, I'm not sure why LFD is logging only part of the string of line 843 (lfd.pl) to /var/log/messages ("cessing" rather than "lfd - processing"), this made it pretty hard to track down what was logging these errors.
Edit: I forgot to mention, we are using the latest version of CSF - v5.12.