reicht für port 5000 nicht die alles blockeren regel? muss ich dafür ne extra regel machen und port 5000 direkt blockieren? ich habe port 5000 nur für meine interne ip freigegeben, damit ich den dsm benutzen kann...
Apr 2 00:34:07 scemd: SCEMD: disk 1 wake up from hibernation
Apr 2 00:34:07 kernel: [53082.860000] drivers/scsi/sd.c[471]:sd_prep_fn(), sda: cmd 0x0 spin up by pid=3899, comm=dms
Apr 2 00:34:07 kernel: [53082.870000] [/etc/localtime] opened by pid 1867 [u:(/sbin/klogd), comm:(klogd)]
Apr 2 14:43:34 kernel: [104050.000000] drivers/scsi/sd.c[471]:sd_prep_fn(), sda: cmd 0x0 spin up by pid=407, comm=jbd2/sda1-8
Apr 2 14:43:34 kernel: [104050.010000] [/etc/localtime] opened by pid 1867 [u:(/sbin/klogd), comm:(klogd)]
Apr 2 14:43:34 scemd: SCEMD: disk 1 wake up from hibernation
Apr 2 14:54:09 kernel: [104685.630000] [/etc/localtime] opened by pid 2605 [u:(/usr/syno/bin/scemd), comm:(scemd)]
Apr 2 21:14:45 kernel: [127520.740000] drivers/scsi/sd.c[471]:sd_prep_fn(), sda: cmd 0x0 spin up by pid=3899, comm=dms
Apr 2 21:14:45 kernel: [127520.750000] [/etc/localtime] opened by pid 1867 [u:(/sbin/klogd), comm:(klogd)]
Apr 2 21:14:45 scemd: SCEMD: disk 1 wake up from hibernation
Apr 2 21:14:48 kernel: [127524.000000] [/usr/syno/mediaserver/dmsicon48.png] opened by pid 3899 [u:(/usr/syno/sbin/dms), comm:(dms)]
Apr 2 21:25:24 kernel: [128160.440000] [/etc/localtime] opened by pid 2605 [u:(/usr/syno/bin/scemd), comm:(scemd)]
Apr 3 14:43:34 kernel: [190450.000000] drivers/scsi/sd.c[471]:sd_prep_fn(), sda: cmd 0x0 spin up by pid=407, comm=jbd2/sda1-8
Apr 3 14:43:34 kernel: [190450.010000] [/etc/localtime] opened by pid 1867 [u:(/sbin/klogd), comm:(klogd)]
Apr 3 14:43:34 scemd: SCEMD: disk 1 wake up from hibernation
Apr 3 14:54:10 kernel: [191085.720000] [/etc/localtime] opened by pid 2605 [u:(/usr/syno/bin/scemd), comm:(scemd)]
Apr 3 19:53:44 scemd: SCEMD: disk 1 wake up from hibernation
Apr 3 19:53:44 kernel: [209060.170000] drivers/scsi/sd.c[471]:sd_prep_fn(), sda: cmd 0x0 spin up by pid=3816, comm=smbd
Apr 3 19:53:44 kernel: [209060.180000] [/etc/localtime] opened by pid 1867 [u:(/sbin/klogd), comm:(klogd)]
Apr 3 19:53:48 kernel: [209063.500000] [] opened by pid 3816 [u:(/usr/syno/sbin/smbd), comm:(smbd)]
Apr 3 19:54:00 kernel: [209075.840000] [/usr/syno/etc/smb.conf] opened by pid 1989 [u:(/usr/syno/bin/findhostd), comm:(findhostd)]
Apr 3 19:54:01 kernel: [209076.860000] [/etc/resolv.conf] opened by pid 1989 [u:(/usr/syno/bin/findhostd), comm:(findhostd)]
Apr 3 19:54:03 kernel: [209078.930000] [/usr/syno/synoman/] opened by pid 14120 [u:(/usr/syno/apache/bin/httpd), comm:(httpd)]
Apr 3 19:57:15 kernel: [209270.360000] [/usr/syno/etc/smb.conf] opened by pid 1989 [u:(/usr/syno/bin/findhostd), comm:(findhostd)]
Apr 3 19:57:16 kernel: [209271.390000] [/etc/resolv.conf] opened by pid 1989 [u:(/usr/syno/bin/findhostd), comm:(findhostd)]
DS> ps | grep 3816
3816 root 19816 S /usr/syno/sbin/smbd -D
17775 root 2928 S grep 3816
DS> ps | grep 407
407 root 0 SW [jbd2/sda1-8]
3996 root 4072 S /usr/syno/sbin/sshd
18135 root 2928 S grep 407
DS> ps | grep 3899
19066 root 2928 S grep 3899
So einfach ist das leider nicht, wenn du noch ein paar mehr Einträge liest. Gib einfach mal "jbd2" ein ...
MfG Matthieu
Apr 3 23:48:44 kernel: [223159.740000] [/usr/syno/synoman/phpsrc/web/] opened by pid 4086 [u:(/usr/syno/apache/bin/httpd), comm:(httpd)]
Apr 3 23:48:44 kernel: [223159.750000] drivers/scsi/sd.c[471]:sd_prep_fn(), sda: cmd 0x0 spin up by pid=4086, comm=httpd
Apr 3 23:48:44 scemd: SCEMD: disk 1 wake up from hibernation
Apr 3 23:48:48 kernel: [223163.060000] [/usr/.htaccess] opened by pid 4086 [u:(/usr/syno/apache/bin/httpd), comm:(httpd)]
DS> ps | grep 4086
4086 nobody 60696 S /usr/syno/apache/bin/httpd -DHAVE_PHP
22262 root 2928 S grep 4086
Apr 4 04:01:03 kernel: [238299.000000] drivers/scsi/sd.c[471]:sd_prep_fn(), sda: cmd 0x0 spin up by pid=407, comm=jbd2/sda1-8
Apr 4 04:01:03 kernel: [238299.010000] [/etc/localtime] opened by pid 1867 [u:(/sbin/klogd), comm:(klogd)]
Apr 4 04:01:03 scemd: SCEMD: disk 1 wake up from hibernation
Apr 4 04:01:07 kernel: [238302.270000] [/var/log/messages] opened by pid 1865 [u:(/sbin/syslogd), comm:(syslogd)]
Apr 4 07:40:41 kernel: [251476.590000] [/usr/syno/synoman/phpsrc/web/] opened by pid 22302 [u:(/usr/syno/apache/bin/httpd), comm:(httpd)]
Apr 4 07:40:46 scemd: SCEMD: disk 1 wake up from hibernation
Apr 4 07:40:46 kernel: [251482.000000] drivers/scsi/sd.c[471]:sd_prep_fn(), sda: cmd 0x0 spin up by pid=407, comm=jbd2/sda1-8
Apr 4 07:40:46 kernel: [251482.010000] [/etc/localtime] opened by pid 2605 [u:(/usr/syno/bin/scemd), comm:(scemd)]
Apr 4 07:40:50 kernel: [251485.260000] [/var/log/messages] opened by pid 1865 [u:(/sbin/syslogd), comm:(syslogd)]
Apr 4 08:46:25 scemd: SCEMD: disk 1 wake up from hibernation
Apr 4 08:46:25 kernel: [255420.360000] drivers/scsi/sd.c[471]:sd_prep_fn(), sda: cmd 0x0 spin up by pid=3816, comm=smbd
Apr 4 08:46:25 kernel: [255420.370000] [/etc/localtime] opened by pid 1867 [u:(/sbin/klogd), comm:(klogd)]
Apr 4 08:46:28 kernel: [255423.820000] [] opened by pid 3816 [u:(/usr/syno/sbin/smbd), comm:(smbd)]
Apr 4 08:46:43 kernel: [255438.470000] [/var/run/smbd.pid] opened by pid 12598 [u:(/usr/syno/sbin/smbd), comm:(smbd)]
Wenn du das Forum hilfreich findest oder uns unterstützen möchtest, dann gib uns doch einfach einen Kaffee aus.
Als Dankeschön schalten wir deinen Account werbefrei.