RE: Log Watcher For a PIX

From: Muhammad Faisal Rauf Danka (mfrd@attitudex.com)
Date: 10/08/02


Date: Tue, 8 Oct 2002 04:52:37 -0700 (PDT)
From: Muhammad Faisal Rauf Danka <mfrd@attitudex.com>
To: <naveed.ahmed@vinciti.com>, "Ben Corman" <ben.corman@jefferson.edu>, security-basics@securityfocus.com

LogSurfer: http://www.cert.dfn.de/eng/logsurf/
Swatch: http://oit.ucsb.edu/~eta/swatch/

Regards
--------
Muhammad Faisal Rauf Danka

Head of GemSEC / Chief Technology Officer
Gem Internet Services (Pvt) Ltd.
web: www.gem.net.pk
Key Id: 0x784B0202
Key Fingerprint: 6F8C EDCF 6C6E 06A5 48D7 6A20 C592 484B
784B 0202

--- "Naveed" <naveed.ahmed@vinciti.com> wrote:
>Hi
>
>Swatch and Logsurfer are both good products.
>Try a google search on them as i do not remember the URL's
>
>Good luck
>-Naveed
>
>-----Original Message-----
>From: Ben Corman [mailto:ben.corman@jefferson.edu]
>Sent: Thursday, October 03, 2002 11:55 PM
>To: security-basics@securityfocus.com
>Subject: Log Watcher For a PIX
>
>
>I recently brought up a PIX firewall and have all the logs directed to a
>Linux syslog server. I'm hoping you all can direct me towards a good log
>watcher / parser that will alert me to suspicious activity.
>
>TIA
>
>-Ben Corman

_____________________________________________________________
---------------------------
[ATTITUDEX.COM]
http://www.attitudex.com/
---------------------------

_____________________________________________________________
Select your own custom email address for FREE! Get you@yourchoice.com w/No Ads, 6MB, POP & more! http://www.everyone.net/selectmail?campaign=tag