[{"title": "btmp\u548cwtmp", "desc": "\u8fd9\u4e24\u4e2a\u6587\u4ef6\u90fd\u4f4d\u4e8e/var/log\u4e0b\u9762\uff0cwtmp\u8bb0\u5f55\u7684\u662f\u767b\u5f55\u7684\u4fe1\u606f\uff0cbtmp\u8bb0\u5f55\u7684\u662f\u767b\u5f55\u5931\u8d25\u4fe1\u606f\u3002\u6700\u8fd1\u8001\u662f\u6709\u654c\u5bf9\u52bf\u529b\u66b4\u529b\u7834\u89e3\u5bfc\u81f4btmp\uff0c\u6587\u4ef6\u731b\u589e\uff0c\u7531\u4e8e\u670d\u52a1\u5668\u8d44\u6e90\u6709\u9650\uff0c\u5220\u9664btmp\u91cd\u5efa\u4e86\u3002", "content": "

1.\u5220\u9664\u4e4b\u524d\u5148\u7528lastb \u547d\u4ee4\u67e5\u770b\u4e0b\u6076\u610f\u767b\u5f55\u7684\u5883\u5916IP\uff0c\u7528\u9632\u706b\u5899\u628aIP\u7981\u6b62\u4e86\u3002

[root@Docker log]#  lastb

[root@Docker log]#  firewall-cmd --permanent --add-rich-rule='rule family=ipv4 source address=\"161.97.86.26\" drop'

[root@Docker log]#  firewall-cmd --permanent --add-rich-rule='rule family=ipv4 source address=\"188.166.72.50\" drop'

[root@Docker log]#  firewall-reload

2.\u5220\u9664\u91cd\u65b0\u5efa

[root@Docker log]# rm -rf /var/log/btmp

[root@Docker log]# touch /var/log/btmp

[root@Docker log]# chown root:utmp /var/log/btmp

[root@Docker log]# chmod 0600 /var/log/btmp

[root@Docker log]# lastb


btmp begins Wed Jul 28 09:26:19 2021

3.\u5220\u9664\u540e\u7684\u62a5\u9519\u63d0\u793a

last: /var/log/wtmp: No such file or directory

Perhaps this file was removed by the operator to prevent logging last info.


lastb: /var/log/btmp: No such file or directory

Perhaps this file was removed by the operator to prevent logging lastb info.

"}, {"title": "\u534e\u4e3a\u8363\u8000magicbook pro20\u724816.1\u5bf8\u62c6\u673a\u6362\u5c4f", "desc": "\u8fd9\u6b21\u6362\u5c4f\uff0c\u7f51\u4e0a\u641c\u4e86\u597d\u591a\u8d44\u6599\u90fd\u662f19\u724814\u82f1\u5bf8\u7684\u62c6\u673a\u56fe\u7247\uff0c\u6211\u8fd9\u6b3e\u662f\u534e\u4e3a\u8363\u8000magicbook pro20\u724816.1\u5bf8\u65e0\u8fb9\u6846\u7684\u5e9f\u4e86\u8001\u5927\u52b2\u624d\u641e\u5b9a\uff0c\u7559\u56fe\u5e2e\u52a9\u5176\u5b83\u6362\u5c4f\u7684\u5c0f\u4f19\u4f34\u3002", "content": "

1.\u5c4f\u5df2\u788e\u3002\u539f\u56e0\u4e0d\u8bf4\u4e86\uff0c\u75c7\u72b6\u5c31\u662f\u8fd9\u4e48\u4e2a\u60c5\u51b5

2.\u62c6\u540e\u76d6\uff0c\u628a\u7535\u6c60\u7ebf\u6263\u4e0b\u6765\uff0c\u9632\u6b62\u5c4f\u70e7\u574f
3.\u7528\u5439\u98ce\u673a\u628a\u5c4f\u4e00\u5468\u5439\u5439\uff0c\u7136\u540e\u7528\u64ac\u68d2\u62c6\u673a\u5361\uff0c\u628a\u8fb9\u6846\u62c6\u6389\u3002
4.\u6dd8\u5b9d\u5546\u5bb6\u8bf4\u5c4f\u4e0b\u9762\u6709\u9ed1\u8272\u80f6\u5934\u628a\u6263\u51fa\u6765\uff0c\u5c4f\u53d6\u4e0b\u6765\uff0c\u6211\u8fd9\u8fb9\u6ca1\u627e\u4e86\u534a\u5929\u6ca1\u627e\u5230\uff0c\u56e0\u4e3a\u8001\u5c4f\u662f\u574f\u7684\u76f4\u63a5\u7528\u64ac\u68d2\u914d\u5408\u62c6\u673a\u5361\u5f3a\u884c\u62c6\u4e0b\u7684\uff0c\u62c6\u4e0b\u5982\u56fe\u4e5f\u6ca1\u53d1\u73b0\u53ef\u4ee5\u62c9\u7684\u62c9\u529b\u80f6\u3002
5.\u6ce8\u610f\u6392\u7ebf\u5f88\u77ed\uff0c\u8bd5\u7740\u5f80\u5916\u62c9\uff0c\u62c9\u4e0d\u52a8\uff0c\u8fd9\u91cc\u4e0a\u65b0\u5c4f\u5c31\u770b\u81ea\u5df1\u624b\u5de5\u80fd\u529b\u4e86\uff0c\u6211\u88c5\u4e86\u4e09\u6b21\u624d\u70b9\u4eae