<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: analysis of Logs in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/analysis-of-logs/m-p/1131273#M896778</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Sushil,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for ur support, currently i dont have perl S/W with me. i will try with sawmill.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks a lot&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 10 Sep 2008 08:44:06 GMT</pubDate>
    <dc:creator>CSCO10905906</dc:creator>
    <dc:date>2008-09-10T08:44:06Z</dc:date>
    <item>
      <title>analysis of Logs</title>
      <link>https://community.cisco.com/t5/network-security/analysis-of-logs/m-p/1131271#M896774</link>
      <description>&lt;P&gt;Please suggest any free tool which can automatically analyse the logs from the firewall, collected in kiwi syslog server.&lt;/P&gt;&lt;P&gt;reagrds, Naveen.&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 13:40:44 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/analysis-of-logs/m-p/1131271#M896774</guid>
      <dc:creator>CSCO10905906</dc:creator>
      <dc:date>2019-03-11T13:40:44Z</dc:date>
    </item>
    <item>
      <title>Re: analysis of Logs</title>
      <link>https://community.cisco.com/t5/network-security/analysis-of-logs/m-p/1131272#M896776</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Syslog server could be:&lt;/P&gt;&lt;P&gt;- Kiwi Syslog:&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.kiwisyslog.com/" target="_blank"&gt;http://www.kiwisyslog.com/&lt;/A&gt;&lt;/P&gt;&lt;P&gt;- 30COM Deamon&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.ncat.co.uk/Download/" target="_blank"&gt;http://www.ncat.co.uk/Download/&lt;/A&gt;&lt;/P&gt;&lt;P&gt;- There is also a Cisco Syslog Server which supports TCP Syslog 514 - pfss512.exe&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/cgi-bin/tablebuild.pl/pix?sort=release" target="_blank"&gt;http://www.cisco.com/cgi-bin/tablebuild.pl/pix?sort=release&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Commercial products that creates graphs and analyzes Syslog to generate stats could be:&lt;/P&gt;&lt;P&gt;- FireGen &lt;A class="jive-link-custom" href="http://www.eventid.net/firegen/" target="_blank"&gt;http://www.eventid.net/firegen/&lt;/A&gt;&lt;/P&gt;&lt;P&gt;- Try this one FWLOGSUM (Freeware).&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.ginini.com/software/fwlogsum/" target="_blank"&gt;http://www.ginini.com/software/fwlogsum/&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.ginini.com/software/fwlogsum/converters/" target="_blank"&gt;http://www.ginini.com/software/fwlogsum/converters/&lt;/A&gt;&lt;/P&gt;&lt;P&gt;It uses basicly PERL scripts and supports a wide range of Firewalls. You just need to install Perl in your Windows environment.&lt;/P&gt;&lt;P&gt;- Try Sawmill (Eval version)&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.sawmill.net/" target="_blank"&gt;http://www.sawmill.net/&lt;/A&gt;&lt;/P&gt;&lt;P&gt;- EIQ Networks Network Security Analyzer eiqnetworks.com&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope that gives you some ideas what to try.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Sushil&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 08 Sep 2008 14:49:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/analysis-of-logs/m-p/1131272#M896776</guid>
      <dc:creator>suschoud</dc:creator>
      <dc:date>2008-09-08T14:49:40Z</dc:date>
    </item>
    <item>
      <title>Re: analysis of Logs</title>
      <link>https://community.cisco.com/t5/network-security/analysis-of-logs/m-p/1131273#M896778</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Sushil,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for ur support, currently i dont have perl S/W with me. i will try with sawmill.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks a lot&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 10 Sep 2008 08:44:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/analysis-of-logs/m-p/1131273#M896778</guid>
      <dc:creator>CSCO10905906</dc:creator>
      <dc:date>2008-09-10T08:44:06Z</dc:date>
    </item>
  </channel>
</rss>

