There are the column names. What sort of information am I looking forward to find attacks in the firewall log and also how can I use Perl to flag certain rows for certain attacks. If you require more information about the scenario I will include it.Date/time Syslog priority Operation Message code Protocol + Source IP Destination IP Source hostname Destination host +name Source port Destination port Destination service Dir +ection Connections built Connections torn down
In reply to data mine a firewall log by alexlearn
| For: | Use: | ||
| & | & | ||
| < | < | ||
| > | > | ||
| [ | [ | ||
| ] | ] |