Security Basics mailing list archives

RE: Log reader


From: "Hayes, Ian" <ihayes () nvcancer org>
Date: Fri, 25 Jul 2008 08:09:46 -0700

If you're looking for particular strings to be alerted on, SWATCH is
nice. If you're looking to have the logs indexed and searchable, check
out Splunk. Splunk Pro will also do the alerting piece.

--
Ian Hayes
Systems Engineer
Nevada Cancer Institute
office: (702) 822-5156
email: ihayes () nvcancer org

-----Original Message-----
From: listbounce () securityfocus com [mailto:listbounce () securityfocus com]
On Behalf Of amatachick () gmail com
Sent: Thursday, July 24, 2008 2:02 AM
To: security-basics () securityfocus com
Subject: Log reader

Our firewall puts out these massive text files which I have to peruse on
a daily basis. I was hoping if someone might know of a good, free tool
which can help filter a large log file like this. Your input is
appreciated.

Thanks,

Amy


--------------------------------------------------------------------------
CONFIDENTIALITY NOTICE: This e-mail message, including any
attachments, is for the sole use of the intended 
recipient(s) and may contain confidential, proprietary, 
and/or privileged information protected by law. If you are 
not the intended recipient, you may not use, copy, or 
distribute this e-mail message or its attachments. If you 
believe you have received this e-mail message in error, 
please contact the sender by reply e-mail and destroy all 
copies of the original message


Current thread: