cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
292
Views
0
Helpful
1
Replies

Syslog Analyzer?

ruben
Level 1
Level 1

Hi... In SDM you can get some stats on top attackers and ports. However, when the log grows large it is impossible to use SDM for this.

I have now set it up to log to a Syslog Server (Kiwi). However, there you just get the whole string/text (port, source, target...) in one field and it's not possible to get any stats out of that.

Is there any recommended tools that splits up this and give better stats? Licensed and/or freeware?

1 Reply 1

Hi,

maybe have a try with splunk 'www.splunk.com' they have a free version which can analyze logs up to 500MB/day in the free version.It is database based and very fast, you can run it on Linux, MacOS and Windows machines.

best

andy

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: