Build a shell text pipeline in stages and verify each transformation.
Find the top source addresses for failed SSH password attempts in /var/log/auth.log without miscounting unrelated lines. PDSA pipeline: question -> sample -> filter -> extract -> aggregate -> verify The common trap is treating the final count as truth even though the extraction field was never checked against real sample lines. Question State the exact output: top source addresses for lines that represent failed SSH password attempts. A pipeline should answer one question. This prevents mixing invalid users, accepted logins, and other auth events accidentally. Filter grep "Failed password" /var/log/auth.log | head Inspect lines before extracting fields. Confirm the pattern…
Sign up free — one personalized lesson every day, matched to your role and goals.
Already have an account? Sign in