<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Realtime Log analyzer for PIX in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/realtime-log-analyzer-for-pix/m-p/143090#M604864</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;What do you mean by analye?  If you want alerts about a specific message, use Kiwi syslog as it is very flexible and easy to configure for alerting.  To analyze the syslog messages, I recommend Fwlogwatch and ReportGen.  Both are *nix freeware apps that provide HTML reports of Pix syslog messages.  FWlogwatch is only concerned with summarizing "Deny"s while ReportGen creates statistical reports based on "Built Inbound" and "Built Outbound" messages.  Using all three of these tools together is provides a lot of useful information for "free".&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 09 Jun 2003 22:51:43 GMT</pubDate>
    <dc:creator>shannong</dc:creator>
    <dc:date>2003-06-09T22:51:43Z</dc:date>
    <item>
      <title>Realtime Log analyzer for PIX</title>
      <link>https://community.cisco.com/t5/network-security/realtime-log-analyzer-for-pix/m-p/143088#M604862</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;I am looking for a OpenSource\Free realtime log analyzer for PIX syslog messages. &lt;/P&gt;&lt;P&gt;Any recommendations ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards \\ Naman&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 06:47:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/realtime-log-analyzer-for-pix/m-p/143088#M604862</guid>
      <dc:creator>mnlatif</dc:creator>
      <dc:date>2020-02-21T06:47:27Z</dc:date>
    </item>
    <item>
      <title>Re: Realtime Log analyzer for PIX</title>
      <link>https://community.cisco.com/t5/network-security/realtime-log-analyzer-for-pix/m-p/143089#M604863</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;You have a few *free* options.  Ther eis always the Cisco Secure PIX Firewall Syslog server that you can download from CCO.  Another windows based server is the Kiwi syslog server.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;However, you can also use the standard unix syslog deamon and run swatch (&lt;A class="jive-link-custom" href="http://swatch.sourceforge.net/" target="_blank"&gt;http://swatch.sourceforge.net/&lt;/A&gt;) to parse your syslog files for pertinent events.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This is just one example of a way to analyze your log files.  There are many more tools and scripts out there but anyhting free is going to take more setup resources.  Compare what it would take to set something like this up to installing the CiscoWorks tool that has everything built-in for you...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Marcus&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 09 Jun 2003 21:16:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/realtime-log-analyzer-for-pix/m-p/143089#M604863</guid>
      <dc:creator>msitzman</dc:creator>
      <dc:date>2003-06-09T21:16:27Z</dc:date>
    </item>
    <item>
      <title>Re: Realtime Log analyzer for PIX</title>
      <link>https://community.cisco.com/t5/network-security/realtime-log-analyzer-for-pix/m-p/143090#M604864</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;What do you mean by analye?  If you want alerts about a specific message, use Kiwi syslog as it is very flexible and easy to configure for alerting.  To analyze the syslog messages, I recommend Fwlogwatch and ReportGen.  Both are *nix freeware apps that provide HTML reports of Pix syslog messages.  FWlogwatch is only concerned with summarizing "Deny"s while ReportGen creates statistical reports based on "Built Inbound" and "Built Outbound" messages.  Using all three of these tools together is provides a lot of useful information for "free".&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 09 Jun 2003 22:51:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/realtime-log-analyzer-for-pix/m-p/143090#M604864</guid>
      <dc:creator>shannong</dc:creator>
      <dc:date>2003-06-09T22:51:43Z</dc:date>
    </item>
    <item>
      <title>Re: Realtime Log analyzer for PIX</title>
      <link>https://community.cisco.com/t5/network-security/realtime-log-analyzer-for-pix/m-p/143091#M604865</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks All.&lt;/P&gt;&lt;P&gt;I need something for Unix platform, so Kiwi Syslog is of no use.&lt;/P&gt;&lt;P&gt;I knew the limitation with Fwlogwatch (only considers Deny), i will take a look at ReportGen. I was also considering LIRE (&lt;A class="jive-link-custom" href="http://logreport.org/" target="_blank"&gt;http://logreport.org/&lt;/A&gt;) however i haven't tested that as yet.&lt;/P&gt;&lt;P&gt;However all the above can't do RealTime analysis, but as recommended "swatch" will be able to provide that functionality.&lt;/P&gt;&lt;P&gt;Thanks again.&lt;/P&gt;&lt;P&gt;\\ Naman&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 09 Jun 2003 23:00:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/realtime-log-analyzer-for-pix/m-p/143091#M604865</guid>
      <dc:creator>mnlatif</dc:creator>
      <dc:date>2003-06-09T23:00:58Z</dc:date>
    </item>
  </channel>
</rss>

