diff --git a/config/jail.conf b/config/jail.conf index fc54e2fb..c48e6a7b 100644 --- a/config/jail.conf +++ b/config/jail.conf @@ -376,7 +376,7 @@ logpath = /var/log/monit [webmin-auth] port = 10000 -logpath = /var/log/auth.log +logpath = %(syslog_authpriv)s # @@ -429,7 +429,7 @@ maxretry = 6 [vsftpd] # or overwrite it in jails.local to be -# logpath = /var/log/auth.log +# logpath = %(syslog_authpriv)s # if you want to rely on PAM failed login attempts # vsftpd's failregex should match both of those formats port = ftp,ftp-data,ftps,ftps-data @@ -539,7 +539,7 @@ logpath = %(postfix_log)s [perdition] port = imap3,imaps,pop3,pop3s -logpath = /var/log/maillog +logpath = %(syslog_mail)s [squirrelmail] @@ -663,13 +663,13 @@ maxretry = 5 [pam-generic] # pam-generic filter can be customized to monitor specific subset of 'tty's banaction = iptables-allports -logpath = /var/log/auth.log +logpath = %(syslog_authpriv)s [xinetd-fail] banaction = iptables-multiport-log -logpath = /var/log/daemon.log +logpath = %(syslog_daemon)s maxretry = 2 @@ -699,7 +699,7 @@ action = %(banaction)s[name=%(__name__)s-tcp, port="%(tcpport)s", protocol="tcp [nagios] enabled = false -logpath = /var/log/messages ; nrpe.cfg may define a different log_facility +logpath = %(syslog_daemon)s ; nrpe.cfg may define a different log_facility maxretry = 1