From owner-freebsd-pf@FreeBSD.ORG Thu Nov 8 23:44:00 2007 Return-Path: Delivered-To: freebsd-pf@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 1430616A419 for ; Thu, 8 Nov 2007 23:44:00 +0000 (UTC) (envelope-from reed@reedmedia.net) Received: from c-0500.emailmediator.com (c-0500.emailmediator.com [64.85.162.118]) by mx1.freebsd.org (Postfix) with ESMTP id D429C13C4A3 for ; Thu, 8 Nov 2007 23:43:59 +0000 (UTC) (envelope-from reed@reedmedia.net) Received: from pool-71-170-114-32.dllstx.fios.verizon.net ([71.170.114.32] helo=reedmedia.net) by c-0500.emailmediator.com with esmtpa (Exim 4.67) (envelope-from ) id 1IqG9t-00000j-1X; Thu, 08 Nov 2007 17:47:33 -0500 Received: from reed@reedmedia.net by reedmedia.net with local (mailout 0.17) id 8892-1194562048; Thu, 08 Nov 2007 16:47:29 -0600 Date: Thu, 8 Nov 2007 16:47:28 -0600 (CST) From: "Jeremy C. Reed" To: Pyuesh Daya In-Reply-To: <47336A25.1070207@b2e.co.za> Message-ID: References: <47336A25.1070207@b2e.co.za> MIME-Version: 1.0 Content-Type: TEXT/PLAIN; charset=US-ASCII Cc: freebsd-pf@freebsd.org Subject: Re: pflog reporting X-BeenThere: freebsd-pf@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Technical discussion and general questions about packet filter \(pf\)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Thu, 08 Nov 2007 23:44:00 -0000 On Thu, 8 Nov 2007, Pyuesh Daya wrote: > Is there a simple tools which can analyse and reports on the pflog file. > I'm looking for something that works with FreeBSD and something > according to the lines of logwatch or fwlogwatch. I don't know if any of the following do what you want, but have a look: http://tud.at/programm/fwanalog/ ports/security/fwanalog http://www.dixongroup.net/hatchet/ http://www.securityoffice.net/products/metacortex/ https://www.solarflux.org/pf/pf2mrtg.sh.txt http://craz1.homelinux.com/#pf2x http://team.gcu-squad.org/~aflab/projects/pfsysinfo/ does "log analysis" Jeremy C. Reed p.s. This was from the PF Packet Filter Book appendix. http://www.amazon.com/OpenBSD-PF-Packet-Filter-Book/dp/0979034205