RE: [fw-wiz] (no subject)
From: Crissup, John (MBNP is) (John.Crissup_at_us.millwardbrown.com)
Date: 03/23/04
- Previous message: Don Kendrick: "Re: [fw-wiz] outbound traffic security risk"
- Maybe in reply to: Hilal Hussein: "[fw-wiz] (no subject)"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
To: firewall-wizards@honor.icsalabs.com Date: Tue, 23 Mar 2004 09:31:25 -0600
I prefer SL4NT. It can be found at http://www.netal.com/
It's got a *ton* of features in it. I have it set to email me if it sees
specific strings or regular expressions. In additions, if it sees a certain
number of PING packets which exceeds a threshold I set in a specific amount
of time, then I have it email me also. This was invaluable during the
Welchia outbreaks with remote users dialing in. I also like it's ability to
send output to a telnet viewer so I can watch specific data scroll past in
real time as I troubleshoot a problem.
-----Original Message-----
From: Hilal Hussein [mailto:hilalma@hotmail.com]
Sent: Tuesday, March 23, 2004 2:42 AM
To: firewall-wizards@honor.icsalabs.com
Subject: [fw-wiz] (no subject)
Dear List,
i have cisco pix firewall that is sending it log data to a cisco syslog
server (windowsxp workstation).
it is working fine with me since it is a service, so i willl be sure that it
is running whenever the server is up and running.
But i have two questions concerning this syslog:
1 - the log files are too big since everyfile contains the whole day logs,
and since the file size is about 400 + Mb, i am not able to open it. kindly,
is there any third party utility which i can use to manage (open, check,
filter, ....) the log files of the cisco syslog?
2 - is there any other syslog server which could work with the cisco pix
firewalls, and which is a service and NOT an application?
your fast respond is highly appreciated,
with regards,
Hilal
_________________________________________________________________
MSN 8 with e-mail virus protection service: 2 months FREE*
http://join.msn.com/?page=features/virus
_______________________________________________
firewall-wizards mailing list
firewall-wizards@honor.icsalabs.com
http://honor.icsalabs.com/mailman/listinfo/firewall-wizards
====================================================
This email is confidential and intended solely for the use of the
individual or organisation to whom it is addressed. Any opinions or
advice presented are solely those of the author and do not necessarily
represent those of the Millward Brown Group of Companies. If you are
not the intended recipient of this email, you should not copy, modify,
distribute or take any action in reliance on it. If you have received
this email in error please notify the sender and delete this email
from your system. Although this email has been checked for viruses
and other defects, no responsibility can be accepted for any loss or
damage arising from its receipt or use.
====================================================
_______________________________________________
firewall-wizards mailing list
firewall-wizards@honor.icsalabs.com
http://honor.icsalabs.com/mailman/listinfo/firewall-wizards
- Previous message: Don Kendrick: "Re: [fw-wiz] outbound traffic security risk"
- Maybe in reply to: Hilal Hussein: "[fw-wiz] (no subject)"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]