[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: NEVER remove log files without asking



On Sun, Aug 15, 2004 at 01:03:26AM +1000, Russell Coker wrote:
> Policy does not mandate "rm -rf" on the entire directory tree.

No, but it does imply that apache owns /var/log/apache and is entitled
to do so.

> Removing /var/log/apache/access.log* /var/log/apache/error.log* and attempting 
> rmdir on /var/log/apache satisfies the requirements of policy.

I'm not sure it does.  Policy states that we should remove logfiles.
If the user has edited the config file to split some of the logfiles
(for example, per virtual host is quite common), we should also remove
those, no?

> Removing subdirectories of /var/log/apache and files other than access.log* 
> and error.log* in /var/log/apache is not required or expected and can only 
> give a bad result.
> 
> If you don't create it then don't remove it!

But we did create it.

-- 
"Next the statesmen will invent cheap lies, putting the blame upon 
the nation that is attacked, and every man will be glad of those
conscience-soothing falsities, and will diligently study them, and refuse
to examine any refutations of them; and thus he will by and by convince 
himself that the war is just, and will thank God for the better sleep 
he enjoys after this process of grotesque self-deception." -- Mark Twain



Reply to: