Re: [logs] PIX log lines

From: Adrian Grigorof (adrian.grigorof@private)
Date: Mon Feb 23 2004 - 13:13:34 PST

  • Next message: Rainer Gerhards: "[logs] Is a precise spec better?"

    Speaking of sanitizing log or configuration files, one can use the
    "sanitize" utility available from http://www.eventid.net/firewalls/. It will
    take a file name as argument and create a new one with all the IP addresses
    replaced with random ones. It will maintain the same "random" IP address
    consistently for a given "real" IP. RFC 1918 IP addresses (a.k.a.private
    IPs) will be replaced with random RFC 1918 IPs.
    
    Regards,
    
    Adrian Grigorof
    Altair Technologies
    www.altairtech.ca
    www.eventid.net
    
    
    ----- Original Message ----- 
    From: "Tina Bird" <tbird@precision-guesswork.com>
    To: "Daniele Muscetta" <daniele@private>
    Cc: <loganalysis@private>
    Sent: Sunday, February 22, 2004 1:58 PM
    Subject: Re: [logs] PIX log lines
    
    
    >
    > On Sun, 22 Feb 2004, Daniele Muscetta wrote:
    >
    > > I might even be able to provide you some example logs (sanitized) [...]
    
    _______________________________________________
    LogAnalysis mailing list
    LogAnalysis@private
    http://lists.shmoo.com/mailman/listinfo/loganalysis
    



    This archive was generated by hypermail 2b30 : Mon Feb 23 2004 - 14:11:56 PST