Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 12 Aug 1998 17:52:28 +0200
From:      Philippe Regnauld <regnauld@deepo.prosa.dk>
To:        Reidar Bratsberg <reidar@ravn.no>
Cc:        security@FreeBSD.ORG
Subject:   Re: Where are your logs? Methods of logging?
Message-ID:  <19980812175228.41295@deepo.prosa.dk>
In-Reply-To: <3.0.32.19980731162500.00869ce0@trost.ravn.no>; from Reidar Bratsberg on Fri, Jul 31, 1998 at 04:25:00PM %2B0200
References:  <3.0.32.19980731162500.00869ce0@trost.ravn.no>

next in thread | previous in thread | raw e-mail | index | archive | help

	[catching up on a lot of mail]

Reidar Bratsberg writes:
> 
> Other options: Let syslog log to a serial port, and set up an
> old machine with MS-DOS (or whatever) to receive them.

	As mentioned later, TP with transmit cut doesn't seem to
	work -- to improve on your above solution, put an old DX33
	back to back with the firewall/critical host using PPP or PLIP -- 
	and syslog everyting to that box (run Swatch or Logsurfer
	on it).  It's more complicated than above (and you can't afford to cut 
	the TX wire on the RS-232 with PPP!), but you can eventually do more 
	with that box, like stick a modem on it.

	Think I'll write up something and add it to the security Howto...

-- 
 -[ Philippe Regnauld / sysadmin / regnauld@deepo.prosa.dk / +55.4N +11.3E ]-

               The Internet is busy.  Please try again later.

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe security" in the body of the message



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?19980812175228.41295>