On 29/08/17 11:03, Thomas Nielsen wrote:
Most changes are (S) size (T) timestamp and (5) md5 sum that are modified from the original rpm install, but since they are largely conf files, it is not surprising. There are many articles on howto read the output. Here one that covers most :
Using RPM Verify to Monitor Changes to System Files
_/https://www.novell.com/coolsolutions/feature/16238.html/_
Thomas
On 8/28/2017 at 07:24 PM, ellanios82 <ellanios82@gmail.com> wrote:
- using rpm -Va to verify : size, digest, permissions, type, owner and group of each file, & package signatures, and executes verification scripts if a package has one.
....
i get this this output which is too cryptic for me :
< rpm -Va S.5....T. c /etc/sane.d/dll.conf missing /usr/bin/lua missing /usr/bin/luac missing d /usr/share/man/man1/lua.1.gz missing d /usr/share/man/man1/luac.1.gz ....L.... d /usr/share/man/man1/ftp.1.gz ....L.... /usr/lib64/browser-plugins/javaplugin.so .....U... /var/lib/mlocate S.5....T. c /etc/mime.types S.5....T. c /etc/fonts/conf.d/10-rendering-options.conf S.5....T. c /etc/fonts/conf.d/58-family-prefer-local.conf .......T. /usr/lib64/gconv/gconv-modules.cache .......T. c /etc/cups/cupsd.conf SM5....T. c /etc/fonts/conf.d/30-metric-aliases.conf ......G.. /usr/lib/qemu-bridge-helper /usr/lib/qemu-bridge-helper: unknown group kvm .......T. c /etc/cups/client.conf .M...U... /var/cache/cups S.5....T. c /etc/zypp/zypp.conf S.5....T. c /etc/ntp.conf S.5....T. c /etc/systemd/journald.conf missing /usr/lib/systemd/system/tmp.mount S.5....T. c /etc/postfix/main.cf S.5....T. c /etc/postfix/master.cf S.5....T. c /etc/sysconfig/SuSEfirewall2 ......G.. /var/cache/man S.5....T. c /etc/rkhunter.d/00-opensuse.conf S.5....T. /var/lib/rkhunter/db/i18n/tr S.5....T. /var/lib/rkhunter/db/i18n/tr.utf8 S.5....T. c /etc/sddm.conf ....L.... /usr/lib64/browser-plugins/javaplugin.so missing /usr/bin/.hmac256.hmac ........P /usr/bin/ping S.5....T. c /etc/clamd.conf S.5....T. c /etc/environment ....L.... c /etc/pam.d/common-account ....L.... c /etc/pam.d/common-auth ....L.... c /etc/pam.d/common-password ....L.... c /etc/pam.d/common-session S.5....T. c /etc/ssh/sshd_config S.5....T. c /etc/default/grub ....L.... /usr/share/java/xml-commons-apis.jar >
Does any of this look threatening ??
...... - thank you kindly ... -- To unsubscribe, e-mail: opensuse+unsubscribe@opensuse.org To contact the owner, e-mail: opensuse+owner@opensuse.org
participants (1)
-
ellanios82