[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: Easy way to get check ipflog for relevant alerts?



> hi all,
>
> Is there some kind of filter, or nicer interface which check ipflog in
> /var/log/?
> It seems there is a lot of alerts in there, but it takes some time to get
> through ones i am not interested in (like 127.0.0.1 alerts).
> Any thoughts?

Take a look at logcheck, http://www.psionic.com/abacus/logcheck/ - If you
happen to read Spanish, take a look at a little tutorial I did on it,
http://www.gwolf.cx/seguridad/logcheck

Greetings,

-------------------------------------------------------------------
           Gunnar Wolf    gwolf@campus.iztacala.unam.mx
     Universidad Nacional Autónoma de México, Campus Iztacala
   Jefatura de Sección de Desarrollo y Admon. de Sistemas en Red
       Departamento de Seguridad en Computo - DGSCA - UNAM
-------------------------------------------------------------------