[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Link of the Week (#2)



Link of the Week
(we're catching up)

In the spirit of KLUG's security month, here's a link about a program
to notify you of security breeches.
--------------------------------------------------------------------
"fireparse" is a perl script that is executed daily that reports on all
packets that have been logged by the kernel's ipchains and iptables packet
filtering subsystems.

The report can include: 
source and destination IPs, ports and protocols 
interface 
direction 
hit count 
iptables rule 
resulting action 
fully resolved host name
The report can be formatted plain text e-mail or a colored HTML table -
delivered via an e-mail or a local file.

fireparse also moves all iptables entries from your syslog file into a
second message file so that other syslog entries are more easily noticed
and recognized. 

        http://aaron.marasco.com/linux.html


KLUG Linkmasters
Ted and Thad Juszczak
linkmaster@kalamazoolinux.org