LinuxQuestions.org
Visit Jeremy's Blog.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 10-19-2005, 03:13 PM   #1
zuessh
Member
 
Registered: Jun 2002
Location: USA
Distribution: Suse 8.0
Posts: 247

Rep: Reputation: 30
Cisco PIX and fwlogwatch


I recently ran across a tool called fwlogwatch and would like to send all cisco pix logs to fwlogwatch and have it produce reports and alerts. Does anyone have any experience with fwlogwatch? Or, is there a better tool for analyzing pix logs? I can not seem to locate a good howto or any documents on fwlogwatch. This may be better suited for the software forum, if so please move. Thanks in advance
 
Old 10-19-2005, 05:16 PM   #2
waltrich
LQ Newbie
 
Registered: Aug 2005
Posts: 1

Rep: Reputation: 0
We use syslog-ng for aggregating not only all Pix logs, but also logs from Snort and the Cisco switches and routers. Not sure what kind of alerting fwlogwatch can do, but with the amount of port scans etc that we get on our Pix, I'm not sure I'd want to be alerted on things the pix sees. The IDS are another matter. What kind of alerts can be generated with fwlogwatch? I might consider using something else if it's good. Check out Syslog-ng for a great syslog tool.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Open port in Cisco PIX firewall aisalen Linux - General 8 12-15-2005 06:51 PM
Mrtg+Cisco PIX pudhiyavan Linux - Networking 4 04-11-2005 02:58 AM
I know this is off subject (cisco pix 501) phatboyz Linux - Security 0 10-18-2004 03:56 PM
Cisco PIX syslog problems jce23 Linux - Security 5 09-13-2004 04:15 PM
Configuring /etc/syslog for Cisco PIX triley Linux - General 0 07-02-2004 10:28 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 03:12 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration