<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic PIX syslog in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/pix-syslog/m-p/620306#M496086</link>
    <description>&lt;P&gt;HI there&lt;/P&gt;&lt;P&gt;I have a Cisco PIX 515E. I am able to retrieve the sys log from an AIX server, and i can break them in files by severity or by error code. Anyway it is still a lot of work to read all of these logs.&lt;/P&gt;&lt;P&gt;My question is simple. Is there any Cisco Software or any recommended software that will simplify the job of reading the logs?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;</description>
    <pubDate>Fri, 21 Feb 2020 09:26:21 GMT</pubDate>
    <dc:creator>KlediBodinaku24</dc:creator>
    <dc:date>2020-02-21T09:26:21Z</dc:date>
    <item>
      <title>PIX syslog</title>
      <link>https://community.cisco.com/t5/network-security/pix-syslog/m-p/620306#M496086</link>
      <description>&lt;P&gt;HI there&lt;/P&gt;&lt;P&gt;I have a Cisco PIX 515E. I am able to retrieve the sys log from an AIX server, and i can break them in files by severity or by error code. Anyway it is still a lot of work to read all of these logs.&lt;/P&gt;&lt;P&gt;My question is simple. Is there any Cisco Software or any recommended software that will simplify the job of reading the logs?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 09:26:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-syslog/m-p/620306#M496086</guid>
      <dc:creator>KlediBodinaku24</dc:creator>
      <dc:date>2020-02-21T09:26:21Z</dc:date>
    </item>
    <item>
      <title>Re: PIX syslog</title>
      <link>https://community.cisco.com/t5/network-security/pix-syslog/m-p/620307#M496087</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Syslog server could be:&lt;/P&gt;&lt;P&gt;- Kiwi Syslog:&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.kiwisyslog.com/" target="_blank"&gt;http://www.kiwisyslog.com/&lt;/A&gt;&lt;/P&gt;&lt;P&gt;- 30COM Deamon&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.ncat.co.uk/Download/" target="_blank"&gt;http://www.ncat.co.uk/Download/&lt;/A&gt;&lt;/P&gt;&lt;P&gt;- There is also a Cisco Syslog Server which supports TCP Syslog 514 - pfss512.exe&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/cgi-bin/tablebuild.pl/pix?sort=release" target="_blank"&gt;http://www.cisco.com/cgi-bin/tablebuild.pl/pix?sort=release&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Commercial products that creates graphs and analyzes Syslog to generate stats could be:&lt;/P&gt;&lt;P&gt;- FireGen &lt;A class="jive-link-custom" href="http://www.eventid.net/firegen/" target="_blank"&gt;http://www.eventid.net/firegen/&lt;/A&gt;&lt;/P&gt;&lt;P&gt;- Try this one FWLOGSUM (Freeware).&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.ginini.com/software/fwlogsum/" target="_blank"&gt;http://www.ginini.com/software/fwlogsum/&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.ginini.com/software/fwlogsum/converters/" target="_blank"&gt;http://www.ginini.com/software/fwlogsum/converters/&lt;/A&gt;&lt;/P&gt;&lt;P&gt;It uses basicly PERL scripts and supports a wide range of Firewalls. You just need to install Perl in your Windows environment.&lt;/P&gt;&lt;P&gt;- Try Sawmill (Eval version)&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.sawmill.net/" target="_blank"&gt;http://www.sawmill.net/&lt;/A&gt;&lt;/P&gt;&lt;P&gt;- EIQ Networks Network Security Analyzer eiqnetworks.com&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope that gives you some ideas what to try.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Sushil&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 08 Mar 2007 15:50:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-syslog/m-p/620307#M496087</guid>
      <dc:creator>suschoud</dc:creator>
      <dc:date>2007-03-08T15:50:38Z</dc:date>
    </item>
    <item>
      <title>Re: PIX syslog</title>
      <link>https://community.cisco.com/t5/network-security/pix-syslog/m-p/620308#M496089</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;If you are looking for a syslog solution there are a number of good syslog devices.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Log Logic is really nice and is an appliance and you can also get a 2T storage with it.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;However, if you want to just have something correlate the logs for you and see the events that are possible issues.   Check out CS-MARS.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;It is actually better to use both solutions though.  Store your logs on a syslog server and have CS-MARS correlate the events and show you what are possible threats.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 13 Mar 2007 01:55:12 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-syslog/m-p/620308#M496089</guid>
      <dc:creator>pplsi</dc:creator>
      <dc:date>2007-03-13T01:55:12Z</dc:date>
    </item>
  </channel>
</rss>

