[165317] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: Parsing Syslog and Acting on it, using other input too

daemon@ATHENA.MIT.EDU (Don Wilder)
Thu Aug 29 10:51:48 2013

In-Reply-To: <521F5E63.9090702@sentex.net>
Date: Thu, 29 Aug 2013 10:50:53 -0400
From: Don Wilder <don.wilder@gmail.com>
To: Mike Tancsa <mike@sentex.net>
Cc: NANOG list <nanog@nanog.org>
Errors-To: nanog-bounces+nanog.discuss=bloom-picayune.mit.edu@nanog.org

I wrote a script in Linux that watches for unauthorized login attempts and
adds the ip address to the blocked list in my firewall. You might want to
search sourceforge for a DYN Firewall and modify it from there.


On Thu, Aug 29, 2013 at 10:44 AM, Mike Tancsa <mike@sentex.net> wrote:

> On 8/29/2013 9:03 AM, Kasper Adel wrote:
> > Hello.
> >
> > I am looking for a way to do proactive monitoring of my network, what I
> am
> > specifically thinking about is receiving syslog msgs from the routers and
>
> You might want to look at
>
> http://www.ossec.net/
>
>         ---Mike
>
>
>
>
> --
> -------------------
> Mike Tancsa, tel +1 519 651 3400
> Sentex Communications, mike@sentex.net
> Providing Internet services since 1994 www.sentex.net
> Cambridge, Ontario Canada   http://www.tancsa.com/
>
>


-- 
---------------------------------------------
Don Wilder
---------------------------------------------

Programming today is a race between software engineers striving to build
bigger and better idiot-proof programs, and the Universe trying to produce
bigger and better idiots. So far, the Universe is winning.

home help back first fref pref prev next nref lref last post