Marcus Newman

Network and Data Security Expert

Firewall Logging & Monitoring

  • 49 min read

What kinds of events do firewall admins want to monitor? Significant events on firewalls fall into three broad categories: critical system issues (hardware failures and the like), significant authorized administrative events (ruleset changes, administrator account

Log Parsing

  • 4 min read

RESOURCES for Log Parsing Firewalls Firewall Logging — A generic introduction to logging firewall devices, with specifics on ipchains and FireWall-1, compiled by tbird cislog [.tar.gz]: A rudimentary tool for reporting on Cisco-based syslog data,