summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorChristian Breunig <christian@breunig.cc>2024-12-01 12:44:10 +0100
committerChristian Breunig <christian@breunig.cc>2024-12-01 12:44:10 +0100
commit24b1d246373a0def45a6e6ba1b0ecabe19fe1d58 (patch)
treec1c6ec3ad2b96f41657ab5febefc74b89c3b0c90
parent0808301358262703cb7c8c0b752ba67621a0bfec (diff)
downloadvyos-1x-24b1d246373a0def45a6e6ba1b0ecabe19fe1d58.tar.gz
vyos-1x-24b1d246373a0def45a6e6ba1b0ecabe19fe1d58.zip
sudo: T6926: remove spam messages to syslog
Right now every command that's executed via op-mode/conf-mode is logged with a session entry/exit and command execution into syslog. sudo[1082396]: vyos : TTY=pts/1 ; PWD=/home/vyos ; USER=root ; COMMAND=/usr/bin/mv /tmp/config.boot.1082388 /opt/vyatta/etc/config/archive/config.boot sudo[1082396]: pam_unix(sudo:session): session opened for user root(uid=0) by vyos(uid=1002) sudo[1082396]: pam_unix(sudo:session): session closed for user root sudo[1082399]: vyos : TTY=pts/1 ; PWD=/home/vyos ; USER=root ; COMMAND=/usr/sbin/logrotate -f -s /opt/vyatta/etc/config/archive/lr.state /opt/vyatta/etc/config/archive/lr.conf sudo[1082399]: pam_unix(sudo:session): session opened for user root(uid=0) by vyos(uid=1002) sudo[1082399]: pam_unix(sudo:session): session closed for user root This heavily bloats remote logging services - remove the log entries
-rw-r--r--src/etc/sudoers.d/vyos3
1 files changed, 2 insertions, 1 deletions
diff --git a/src/etc/sudoers.d/vyos b/src/etc/sudoers.d/vyos
index 67d7babc4..198b9b9aa 100644
--- a/src/etc/sudoers.d/vyos
+++ b/src/etc/sudoers.d/vyos
@@ -1,7 +1,8 @@
#
# VyOS modifications to sudo configuration
#
-Defaults syslog_goodpri=info
+Defaults !syslog
+Defaults !pam_session
Defaults env_keep+=VYATTA_*
#