cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
327
Views
0
Helpful
2
Replies

PIX syslog

vincent-n
Level 3
Level 3

Can someone suggest a good combination of application + syslog server to be able to receive syslog messages from a PIX firewall (v 6.3(4)) and produce understandable, layman report on what the messages mean? I'd like to find out things like 'why the firewall blocked this/that service' but simply does not have the time to sit there and go through thousands of messages. Hopefully the application would be able to let me select things such as source/dest addresses. Thanks.

2 Replies 2

Collin Clark
VIP Alumni
VIP Alumni

Check out http://www.sawmill.net/

There are many others, google firewall log analysis

mike.keller
Level 1
Level 1

Take a look at splunk. There is a free version if you want to try it out. http://www.splunk.com

Review Cisco Networking products for a $25 gift card