<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>wtmp archivos - SoyAdmin.com</title>
	<atom:link href="https://soyadmin.com/tag/wtmp/feed/" rel="self" type="application/rss+xml" />
	<link>https://soyadmin.com/tag/wtmp/</link>
	<description>La Recova del Informático - Linux en Español - Sysadmin, Noticias Linux y más</description>
	<lastBuildDate>Wed, 30 Oct 2019 20:54:08 +0000</lastBuildDate>
	<language>es</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.9.4</generator>

<image>
	<url>https://soyadmin.com/wp-content/uploads/2021/03/cropped-favicon-32x32.png</url>
	<title>wtmp archivos - SoyAdmin.com</title>
	<link>https://soyadmin.com/tag/wtmp/</link>
	<width>32</width>
	<height>32</height>
</image> 
<site xmlns="com-wordpress:feed-additions:1">147662452</site>	<item>
		<title>Logs: Como ver el contenido de btmp y wtmp con utmpdump en CentOS</title>
		<link>https://soyadmin.com/logs-como-ver-el-contenido-de-btmp-y-wtmp-con-utmpdump-en-centos/</link>
					<comments>https://soyadmin.com/logs-como-ver-el-contenido-de-btmp-y-wtmp-con-utmpdump-en-centos/#respond</comments>
		
		<dc:creator><![CDATA[Mauro]]></dc:creator>
		<pubDate>Wed, 30 Oct 2019 20:54:08 +0000</pubDate>
				<category><![CDATA[Linux]]></category>
		<category><![CDATA[btmp]]></category>
		<category><![CDATA[logs binarios]]></category>
		<category><![CDATA[utmpdump]]></category>
		<category><![CDATA[wtmp]]></category>
		<guid isPermaLink="false">https://old.soyadmin.com/?p=1364</guid>

					<description><![CDATA[<p>btmp y wtmp son logs en formato binario, por lo que no pueden ser abiertos o leídos de las maneras tradicionales (vi, vim, tail, etc) btmp es un log que registra todos los accesos&#46;&#46;&#46;</p>
<p>La entrada <a href="https://soyadmin.com/logs-como-ver-el-contenido-de-btmp-y-wtmp-con-utmpdump-en-centos/">Logs: Como ver el contenido de btmp y wtmp con utmpdump en CentOS</a> se publicó primero en <a href="https://soyadmin.com">SoyAdmin.com</a>.</p>
]]></description>
										<content:encoded><![CDATA[
<p><strong>btmp y wtmp </strong>son logs en formato binario, por lo que no pueden ser abiertos o leídos de las maneras tradicionales (vi, vim, tail, etc)</p>


<p class="has-medium-font-size"><strong>btmp</strong> es un log que  registra todos los accesos fallidos al sistema.<br /><strong>wtmp</strong> es un log que registra los accesos al sistema.</p>


<p>Al estar en binario, es necesario utilizar el comando <strong>utmpdump</strong> para poder ver el contenido.</p>

<pre class="wp-block-code"><span><code class="hljs language-php"><span class="hljs-comment"># utmpdump /var/log/btmp</span>
&#91;<span class="hljs-number">6</span>] &#91;<span class="hljs-number">13503</span>] &#91;    ] &#91;admin   ] &#91;ssh:notty   ] &#91;<span class="hljs-number">193.121</span><span class="hljs-number">.163</span><span class="hljs-number">.182</span>      ] &#91;<span class="hljs-number">193.32</span><span class="hljs-number">.163</span><span class="hljs-number">.182</span> ] &#91;mié oct <span class="hljs-number">30</span> <span class="hljs-number">12</span>:<span class="hljs-number">05</span>:<span class="hljs-number">23</span> <span class="hljs-number">2019</span> <span class="hljs-number">03</span>]
&#91;<span class="hljs-number">6</span>] &#91;<span class="hljs-number">13945</span>] &#91;    ] &#91;Serial@<span class="hljs-number">2017</span>] &#91;ssh:notty   ] &#91;<span class="hljs-number">66.</span>ip<span class="hljs-number">-54</span><span class="hljs-number">-37</span><span class="hljs-number">-68.</span>eu   ] &#91;<span class="hljs-number">54.37</span><span class="hljs-number">.68</span><span class="hljs-number">.66</span>    ] &#91;mié oct <span class="hljs-number">30</span> <span class="hljs-number">12</span>:<span class="hljs-number">05</span>:<span class="hljs-number">49</span> <span class="hljs-number">2019</span> <span class="hljs-number">03</span>]
&#91;<span class="hljs-number">6</span>] &#91;<span class="hljs-number">14193</span>] &#91;    ] &#91;root    ] &#91;ssh:notty   ] &#91;<span class="hljs-number">223.</span>ip<span class="hljs-number">-51</span><span class="hljs-number">-77</span><span class="hljs-number">-156.</span>eu ] &#91;<span class="hljs-number">51.77</span><span class="hljs-number">.16</span><span class="hljs-number">.223</span>  ] &#91;mié oct <span class="hljs-number">30</span> <span class="hljs-number">12</span>:<span class="hljs-number">06</span>:<span class="hljs-number">07</span> <span class="hljs-number">2019</span> <span class="hljs-number">03</span>]
&#91;<span class="hljs-number">6</span>] &#91;<span class="hljs-number">14306</span>] &#91;    ] &#91;odroid  ] &#91;ssh:notty   ] &#91;<span class="hljs-number">202.</span>ip<span class="hljs-number">-149</span><span class="hljs-number">-56</span><span class="hljs-number">-132.</span>net] &#91;<span class="hljs-number">19.56</span><span class="hljs-number">.132</span><span class="hljs-number">.202</span> ] &#91;mié oct <span class="hljs-number">30</span> <span class="hljs-number">12</span>:<span class="hljs-number">06</span>:<span class="hljs-number">17</span> <span class="hljs-number">2019</span> <span class="hljs-number">03</span>]
&#91;<span class="hljs-number">6</span>] &#91;<span class="hljs-number">14306</span>] &#91;    ] &#91;odroid  ] &#91;ssh:notty   ] &#91;<span class="hljs-number">202.</span>ip<span class="hljs-number">-149</span><span class="hljs-number">-56</span><span class="hljs-number">-132.</span>net] &#91;<span class="hljs-number">12.56</span><span class="hljs-number">.132</span><span class="hljs-number">.202</span> ] &#91;mié
oct <span class="hljs-number">30</span> <span class="hljs-number">12</span>:<span class="hljs-number">06</span>:<span class="hljs-number">19</span> <span class="hljs-number">2019</span> <span class="hljs-number">03</span>]</code></span></pre>
<pre class="wp-block-code"><span><code class="hljs language-php"><span class="hljs-comment"># utmpdump /var/log/wtmp</span>
&#91;<span class="hljs-number">8</span>] &#91;<span class="hljs-number">35230</span>] &#91;    ] &#91;        ] &#91;pts/<span class="hljs-number">1</span>       ] &#91;                    ] &#91;<span class="hljs-number">0.0</span><span class="hljs-number">.0</span><span class="hljs-number">.0</span>        ] &#91;mar oct <span class="hljs-number">29</span> <span class="hljs-number">20</span>:<span class="hljs-number">02</span>:<span class="hljs-number">25</span> <span class="hljs-number">2019</span> <span class="hljs-number">-03</span>]
&#91;<span class="hljs-number">7</span>] &#91;<span class="hljs-number">11837</span>] &#91;ts/<span class="hljs-number">0</span>] &#91;root    ] &#91;pts/<span class="hljs-number">0</span>       ] &#91;hosxxxxxxxxxxr] &#91;<span class="hljs-number">181.189</span><span class="hljs-number">.222</span><span class="hljs-number">.51</span> ] &#91;mié oct <span class="hljs-number">30</span> <span class="hljs-number">08</span>:<span class="hljs-number">58</span>:<span class="hljs-number">04</span> <span class="hljs-number">2019</span> <span class="hljs-number">03</span>]
&#91;<span class="hljs-number">7</span>] &#91;<span class="hljs-number">62889</span>] &#91;ts/<span class="hljs-number">0</span>] &#91;root    ] &#91;pts/<span class="hljs-number">0</span>       ] &#91;host1xxxxxxxxxxxxxx] &#91;<span class="hljs-number">11.9</span><span class="hljs-number">.222</span><span class="hljs-number">.51</span> ] &#91;mié oct <span class="hljs-number">30</span> <span class="hljs-number">10</span>:<span class="hljs-number">08</span>:<span class="hljs-number">05</span> <span class="hljs-number">2019</span> <span class="hljs-number">03</span>]</code></span></pre>

<p><strong>También podemos ver como actualiza el archivo en tiempo real:</strong></p>

<pre class="wp-block-code"><span><code class="hljs language-php"><span class="hljs-comment"># utmpdump -f /var/log/wtmp</span></code></span></pre><p>La entrada <a href="https://soyadmin.com/logs-como-ver-el-contenido-de-btmp-y-wtmp-con-utmpdump-en-centos/">Logs: Como ver el contenido de btmp y wtmp con utmpdump en CentOS</a> se publicó primero en <a href="https://soyadmin.com">SoyAdmin.com</a>.</p>
]]></content:encoded>
					
					<wfw:commentRss>https://soyadmin.com/logs-como-ver-el-contenido-de-btmp-y-wtmp-con-utmpdump-en-centos/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">1364</post-id>	</item>
	</channel>
</rss>
