Author

Topic: request: security log file (Read 1077 times)

newbie
Activity: 28
Merit: 0
January 30, 2012, 08:17:02 PM
#3
+1 on RPC throttling
personally, i don't need the logs
full member
Activity: 210
Merit: 100
January 30, 2012, 08:38:11 AM
#2
I like the idea, +1
kjj
legendary
Activity: 1302
Merit: 1026
January 26, 2012, 08:29:08 AM
#1
There is brute-force tool that targets bitcoin RPC active in the wild.  See this thread.

Can we get an optional low volume log file to be used to report things like failed RPC requests?  Ideally the format should be simple and contain the IP address, so that it can be parsed by fail2ban or other tools.  I think that these failures are already logged, but I don't think that I'd want to point fail2ban at the firehose that is debug.log.

Having RPC throttling built in would probably be safer for most people, but adding a second log file seems easier.
Jump to: