杂货:服务器断电重启与正常重启的区别——/var/log/secure

区别在于一个关键句: Registered Authentication Agent for unix-process

断电重启日志:14:00

Jul 20 13:23:58 localhost sshd[1582]: pam_unix(sshd:session): session closed for user root
Jul 20 13:23:59 localhost sshd[1541]: pam_unix(sshd:session): session closed for user root
Jul 20 13:50:26 localhost sshd[1325]: pam_unix(sshd:session): session closed for user root
Jul 20 14:00:19 localhost polkitd[1034]: Loading rules from directory /etc/polkit-1/rules.d
Jul 20 14:00:19 localhost polkitd[1034]: Loading rules from directory /usr/share/polkit-1/rules.d
Jul 20 14:00:19 localhost polkitd[1034]: Finished loading, compiling and executing 2 rules
Jul 20 14:00:19 localhost polkitd[1034]: Acquired the name org.freedesktop.PolicyKit1 on the system bus
Jul 20 14:00:28 localhost sshd[1275]: Server listening on 0.0.0.0 port 22.
Jul 20 14:00:28 localhost sshd[1275]: Server listening on :: port 22.
Jul 20 14:00:28 localhost sshd[1284]: Accepted password for root from 192.168.60.1 port 3076 ssh2

reboot命令重启日志:14:05:54

Jul 20 14:01:13 localhost sshd[1363]: Accepted password for root from 192.168.60.1 port 3216 ssh2
Jul 20 14:01:13 localhost sshd[1363]: pam_unix(sshd:session): session opened for user root by (uid=0)
Jul 20 14:05:56 localhost polkitd[1034]: Registered Authentication Agent for unix-process:1420:35477 (system bus name :1.19 [/usr/bin/pkttyagent --notify-fd 5 --fallback], object path /org/freedesktop/PolicyKit1/AuthenticationAgent, locale en_US.UTF-8)
Jul 20 14:06:20 localhost polkitd[1041]: Loading rules from directory /etc/polkit-1/rules.d
Jul 20 14:06:20 localhost polkitd[1041]: Loading rules from directory /usr/share/polkit-1/rules.d
Jul 20 14:06:20 localhost polkitd[1041]: Finished loading, compiling and executing 2 rules
Jul 20 14:06:20 localhost polkitd[1041]: Acquired the name org.freedesktop.PolicyKit1 on the system bus
Jul 20 14:06:28 localhost sshd[1291]: Server listening on 0.0.0.0 port 22.
Jul 20 14:06:28 localhost sshd[1291]: Server listening on :: port 22.
Jul 20 14:06:29 localhost sshd[1300]: Accepted password for root from 192.168.60.1 port 4369 ssh2

在17:15~17:20两次reboot期间还进行了多次断电重启试验
可以印证这个结论:
reboot

有更专业的分析方法,欢迎留言

猜你喜欢

转载自blog.csdn.net/qq_36937234/article/details/81136058
今日推荐