Ethical Hacking Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package. | Computer Forensics Training at InfoSec Institute Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors. |

| Subject: | RE: Firewall Logs |
|---|---|
| Date: | Tue, 28 Sep 2004 08:29:09 -0400 |
Log the Netscreen Logs to a SYSLOG Server. You can use the WIN32 KIWI
SYSLOG DAEMON. That's works pretty well.
This way you can capture all the logs.
Good Luck!
JMB
-----Original Message-----
From: Symantec_Mail_Security_for_SMTP@eio.local
[mailto:Symantec_Mail_Security_for_SMTP@eio.local]
Sent: Monday, September 27, 2004 1:35 PM
To: 'Sumanram K'; firewalls@securityfocus.com
Subject: RE: Firewall Logs
Where are you logging to?
All NetScreens have a finite and fairly small log buffer. Once
the buffer is full the oldest log entries are overwritten.
If you want to keep the logs for any length of time you will
need a syslog server, or perhaps NSM.
I am assuming that you have logging turned on for all the
policies and that they are not disabled or similar?
Rgds,
JK
-----Original Message-----
From: Sumanram K [mailto:ksumanram@rediffmail.com]
Sent: 24 August 2004 01:52
To: firewalls@securityfocus.com
Subject: Firewall Logs
Dear All
We have a a Netscreen 208. Out of 13 policies only 2 policy logs
are shown.
For others we get logs for that particular time only. Except for
the two
logs others are not getting saved. Can anyone solve this
problem?
Regards
Sumanram K
**********************************************************************
Any opinions expressed in the email are those of the individual
and not necessarily the company. This email and any files transmitted
with it are confidential and solely for the use of the intended
recipient. If you are not the intended recipient or the person
responsible for delivering it to the intended recipient, be advised that
you have received this email in error and that any dissemination,
distribution, copying or use is strictly prohibited.
If you have received this email in error, or if you are
concerned with the content of this email please e-mail to:
e-security.support@vanco.info
The contents of an attachment to this e-mail may contain
software viruses which could damage your own computer system. While the
sender has taken every reasonable precaution to minimise this risk, we
cannot accept liability for any damage which you sustain as a result of
software viruses. You should carry out your own virus checks before
opening any attachments to this e-mail.
**********************************************************************
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| ||
| Previous by Date: | RE: Tools to review ISA Logs, HeerensD |
|---|---|
| Next by Date: | RE: PIX failover without using HSRP, Stong, Ian C. \(Contractor\) |
| Previous by Thread: | RE: Firewall Logs, Jon King |
| Next by Thread: | IOS IDS configuration, Dan Tesch |
| Indexes: | [Date] [Thread] [Top] [All Lists] |