What is your firewall log telling you - responses
Responses to our earlier diary entries regarding firewall log parsing (story1 and story2) have been trickling in.
Reader Matthias has some small awk/shell scripts for parsing iptables log files that he shared here: http://sister-shadow.de/hotlink/isc/log-scripts.tar.gz
And reader Christian recommends using Prelude LML (log monitor lackey): http://www.prelude-technologies.com/en/welcome/index.html
Update #1: An anonymous reader also suggests http://www.loganalysis.org/ .
-Kyle Haugsness
×
Diary Archives
Comments
Its a branch off Analog for system log Analysis.
Though there is some stuff missing like Destination Port stats...this gives me a visual of whats going on.
Checking out some of the suggestions above definitely.
Jeff
JSingleton
Mar 6th 2010
1 decade ago
Chris
Mar 10th 2010
1 decade ago