Logging & Security

Discussion in general that pertains to Sabayon Linux - Must Pertain to Sabayon Linux

Moderator: Moderators

Logging & Security

Postby chasha420 » Fri Mar 23, 2012 19:03

Hi guys,

A few days back I realised that I couldn't see any logs from UFW in "/var/log/messages" and was getting suspicious...later today upon closer inspection I found out that syslog-ng was some how uninstalled! :shock:

Dunno how that happened but I've reinstalled it & I'm sort of getting all paranoid...I'm the kind of guy that takes security quite seriously.

This is what I usually leave running on a console when I think something's going wrong on my network :mrgreen:
Code: Select all
# tail -f /var/log/message | grep BLOCK


Note: for the above command you'll need UFW along with logging option set to MEDIUM.

But anyway I'm interested in hearing your suggestions as to what tools are good at analysing logs and stuff? Also what type of scripts or programs do u guys use to keep intruders at bay?

Thanks in advance :)
User avatar
chasha420
Advanced Hen
 
Posts: 299
Joined: Thu Mar 31, 2011 15:32
Location: /dev/null

Return to Sabayon Linux General Discussion

Who is online

Users browsing this forum: No registered users and 1 guest