[logs] reporting tool for linux firewall

From: Tina Bird (tbird@precision-guesswork.com)
Date: Thu Sep 01 2005 - 11:04:58 PDT


hi all - had a request from a friend, any ideas?

"I have a linux box.  iptables firewall (using shorewall to manage it) and I
was looking for some sort of good firewall log analysis package... hopefully
something that would sit on the firewall and monitor for specific events,
port scans, nefarious looking activity, etc, and send me a notification ala
the freebsd "security report" thingamajigger you can configure."

we'll roll our own if we have to, but i figured there might be some prior
art.

thanks - tbird

_______________________________________________
LogAnalysis mailing list
LogAnalysis@private
http://lists.shmoo.com/mailman/listinfo/loganalysis



This archive was generated by hypermail 2.1.3 : Thu Sep 01 2005 - 11:06:01 PDT