Security Incidents mailing list archives

Re: Looking for program to analyze logs


From: mowse () MOWSE NE MEDIAONE NET (- -)
Date: Thu, 23 Mar 2000 04:28:08 -0000


On the subject of Swatch...

A long while back, I coded a perl swatch-like app called 
plwatch, for watching logs.  Feel free to download and 
tweak it (I'm sure some parts could use it").  I've used it 
quite a bit, and haven't noticed any problems.  I have not 
coded 'daemon mode', but I will if you like...

http://mowse.ne.mediaone.net/vault/code/plwatch.tar.gz

When I was administering a PIX, I used "swatch" for my log 
analysis. It's a freely available tool for Unix that can 
actively monitor the PIX logs


Current thread: