IPFW log results analysis

Giorgos Keramidas keramida at ceid.upatras.gr
Fri Jun 18 03:35:28 PDT 2004


On 2004-06-18 10:43, Uwe Kolsch <uwe.kolsch at wax.co.uk> wrote:
> Is there a tool for FBSD like logwatch on Linux, which can provide a detailed
> but still somehow summarized output based on the logging results of IPFW. I mean
> more detailed than this from the daily security run:
> 
> > 02010    557     48486 deny log ip from any to any out
> > 10000   1026     49716 deny ip from any to any in setup
> > 10003   3859    828227 deny ip from any to any in
> 
> ... and more like this.

You can always write your own shell scripts to parse ipfw logs ;-)

I haven't heard of any summarizing tools, but if you feel that scripting
your own is too much it shouldn't be too hard to roll a few custom
scripts if you tell me what you're looking for in such a report.

- Giorgos



More information about the freebsd-questions mailing list