try fwlogsum

http://www.ginini.com/software/fwlogsum/

----- Original Message ----- From: ". security" <[EMAIL PROTECTED]>
To: <[email protected]>
Sent: Monday, December 04, 2006 6:15 PM
Subject: [FW-1] edge-kiwi syslog [analyzing logs]


Logging events from an edge into a kiwi syslog server, yeah if I had to do that again I'd spend the time to route them to the smart center :)

That being said, what can I use to analyze the logs once they've been logged to the syslog server. I've tried sawmill, they recognize the format but don't have a plug-in that will work.

Splunk works, but doesn't really give me the info I'm looking for. I'm looking for find items like:
-Top talkers
-protocols used
-etc

Any ideas?

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

Reply via email to