From owner-freebsd-questions@FreeBSD.ORG Wed Mar 16 07:58:00 2005 Return-Path: Delivered-To: freebsd-questions@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id A17B316A4CE for ; Wed, 16 Mar 2005 07:58:00 +0000 (GMT) Received: from ciao.gmane.org (main.gmane.org [80.91.229.2]) by mx1.FreeBSD.org (Postfix) with ESMTP id B6D5F43D2D for ; Wed, 16 Mar 2005 07:57:59 +0000 (GMT) (envelope-from freebsd-questions@m.gmane.org) Received: from list by ciao.gmane.org with local (Exim 4.43) id 1DBTNw-0003Jc-UF for freebsd-questions@freebsd.org; Wed, 16 Mar 2005 08:56:08 +0100 Received: from 207-224-118-87.spkn.qwest.net ([207.224.118.87]) by main.gmane.org with esmtp (Gmexim 0.1 (Debian)) id 1AlnuQ-0007hv-00 for ; Wed, 16 Mar 2005 08:56:08 +0100 Received: from sgnezdov by 207-224-118-87.spkn.qwest.net with local (Gmexim 0.1 (Debian)) id 1AlnuQ-0007hv-00 for ; Wed, 16 Mar 2005 08:56:08 +0100 X-Injected-Via-Gmane: http://gmane.org/ To: freebsd-questions@freebsd.org From: Sergei Gnezdov Date: Wed, 16 Mar 2005 07:55:36 +0000 (UTC) Lines: 9 Message-ID: References: <4557.24.98.86.57.1110773047.squirrel@24.98.86.57> X-Complaints-To: usenet@sea.gmane.org X-Gmane-NNTP-Posting-Host: 207-224-118-87.spkn.qwest.net User-Agent: slrn/0.9.8.1 (FreeBSD) Sender: news X-Gmane-MailScanner: Found to be clean X-Gmane-MailScanner: Found to be clean X-Gmane-MailScanner-SpamScore: s X-MailScanner-From: freebsd-questions@m.gmane.org X-MailScanner-To: freebsd-questions@freebsd.org Subject: Re: Howto monitor system security X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list Reply-To: sgnezdov@sergei.homeunix.org List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 16 Mar 2005 07:58:00 -0000 On 2005-03-14, Jerry Bell wrote: > There are many tools that will send alerts to you, but very few that will > work "out of the box", without some level of tuning. There is a > collection of them here: > http://www.syslog.org/Web_Links+index-req-viewlink-cid-4.phtml and here: > http://www.syslog.org/Web_Links+index-req-viewlink-cid-19.phtml I see lots of log analizer tools. Which one is a good choice?