[logs] reporting tool for linux firewall

From: Tina Bird (tbird@precision-guesswork.com)
Date: Thu Sep 01 2005 - 11:04:58 PDT

hi all - had a request from a friend, any ideas?

"I have a linux box.  iptables firewall (using shorewall to manage it) and I
was looking for some sort of good firewall log analysis package... hopefully
something that would sit on the firewall and monitor for specific events,
port scans, nefarious looking activity, etc, and send me a notification ala
the freebsd "security report" thingamajigger you can configure."

we'll roll our own if we have to, but i figured there might be some prior

thanks - tbird

