Here is a typical line from my firewall logfile:
05/20/2005 06:28:39.816 -  TCP connection dropped -
Source:69.27.212.194, 4401, WAN -  Destination:69.111.11.111, 135, LAN -
'RPC Mapper' -  Rule 0
 
Here is my attempt to create a logformat file:
LOGFORMAT (%m/%d/%Y %h:%n:%j.%j - %w %j %j %j - %w %j:%S, %j, %j - %w
%j:%v, %j, %j - %w '%j' - %w %j %j)

I was not sure how to keep some of the data like the port or type of
attempt. Any help is appreciated. Thanks, Doug

+------------------------------------------------------------------------
|  TO UNSUBSCRIBE from this list:
|    http://lists.meer.net/mailman/listinfo/analog-help
|
|  Usenet version: news://news.gmane.org/gmane.comp.web.analog.general
|  List archives:  http://www.analog.cx/docs/mailing.html#listarchives
+------------------------------------------------------------------------

Reply via email to