From owner-freebsd-pf@FreeBSD.ORG Mon Sep 14 04:29:54 2009 Return-Path: Delivered-To: freebsd-pf@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 446E71065676 for ; Mon, 14 Sep 2009 04:29:54 +0000 (UTC) (envelope-from gaurav@subisu.net.np) Received: from mx-02.subisu.net.np (mx-02.subisu.net.np [202.63.240.2]) by mx1.freebsd.org (Postfix) with ESMTP id D93DB8FC08 for ; Mon, 14 Sep 2009 04:29:53 +0000 (UTC) Received: from localhost (mx-02.subisu.net.np [127.0.0.1]) by mx-02.subisu.net.np (Postfix) with ESMTP id 3EAF91C015F for ; Mon, 14 Sep 2009 09:51:42 +0545 (NPT) X-Virus-Scanned: amavisd-new at subisu.net.np Received: from mx-02.subisu.net.np ([127.0.0.1]) by localhost (mx-02.subisu.net.np [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id qeGFukFP9LAp for ; Mon, 14 Sep 2009 09:51:33 +0545 (NPT) Received: from [202.63.244.34] (unknown [202.63.244.34]) by mx-02.subisu.net.np (Postfix) with ESMTP id B8AA71C0153 for ; Mon, 14 Sep 2009 09:51:32 +0545 (NPT) Message-ID: <4AADC15B.5060501@subisu.net.np> Date: Mon, 14 Sep 2009 09:51:51 +0545 From: Gaurav Ghimire User-Agent: Thunderbird 2.0.0.23 (X11/20090817) MIME-Version: 1.0 To: freebsd-pf@freebsd.org Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: 7bit Subject: Packet Filter alerting system. X-BeenThere: freebsd-pf@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list Reply-To: gaurav@subisu.net.np List-Id: "Technical discussion and general questions about packet filter \(pf\)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Mon, 14 Sep 2009 04:29:54 -0000 Hi all, Just curious to know if we have something, some alerting system or mechanism that provides the administrator with the daily reports that pf itself or some other tool collects on pf's behalf. That probably reports the admin of: ~ Total connection counts matched on each rulesets. ~ Total number of counts matched on deny rules. ~ IP/Port attack logs and relatives. I would really appreciate if there are any mechanisms, or am provided with any pointers on achieving this. Regards, -- Gaurav Ghimire System Administrator Subisu Cablenet (P.) Ltd. 148 Thirbum Sadak Baluwatar, Kathmandu Nepal T: 00977 1 4429616/17 Ext.: 110 F: 00977 1 4430572 http://www.subisu.net.np (An ISO 9001:2000 Certified Company)