Files
log_analysis/anomalies/ca3.txt
rpert e96a8b03fc Initial cross-server log inventory + anomaly scan
- 10 hosts (mo1, ams, ams2, ro1, ca1, ca2, ca3, fr1, sony, termux)
- discover-logs.sh: portable inventory (Linux/FreeBSD/Termux)
- scan-anomalies.sh: ERROR/WARN/CRITICAL counts + journalctl + kubectl
- run-all.sh: parallel SSH fan-out
- build-summary.py: aggregates into reports/SUMMARY.md
- 5 HIGH-severity findings identified on ro1 (apache scanner traffic, mount_monitor warnings)
2026-04-10 21:49:17 +00:00

43 lines
1.3 KiB
Plaintext

=== Anomaly scan: ca3.3z8.pw (2026-04-10T21:46:10Z) ===
--- journalctl -p err --since '24 hours ago' ---
-- Journal begins at Sat 2026-03-21 16:10:27 UTC, ends at Fri 2026-04-10 21:46:10 UTC. --
-- No entries --
--- recent log files (mtime < 7d) ---
--- /var/log disk usage ---
41M /var/log
0 /var/log/btmp
4.0K /var/log/auth.log
4.0K /var/log/debug
4.0K /var/log/messages
4.0K /var/log/private
8.0K /var/log/alternatives.log
8.0K /var/log/faillog
8.0K /var/log/lastlog
8.0K /var/log/runit
12K /var/log/wtmp
28K /var/log/daemon.log
32K /var/log/syslog
100K /var/log/apt
136K /var/log/dpkg.log
41M /var/log/journal
--- top 15 largest files under /var/log ---
42593888 /var/log
41951232 /var/log/journal
41947136 /var/log/journal/55590223568e4ab1b9338e2426cfb245
25165824 /var/log/journal/55590223568e4ab1b9338e2426cfb245/system.journal
8388608 /var/log/journal/55590223568e4ab1b9338e2426cfb245/user-1000.journal
8388608 /var/log/journal/55590223568e4ab1b9338e2426cfb245/system@83232735e3e24ff5ace21763d35e7781-0000000000000001-000610a6d481f748.journal
292292 /var/log/lastlog
137512 /var/log/dpkg.log
91195 /var/log/apt
63092 /var/log/apt/term.log
32032 /var/log/faillog
28775 /var/log/syslog
28345 /var/log/daemon.log
12428 /var/log/apt/eipp.log.xz
11579 /var/log/apt/history.log