|
Posted by Wolfgang Kueter on December 28, 2004, 10:12 pm
If you were Registered and logged in, you could reply and use other advanced thread options
Munpe Q wrote:
> 1) Does anyone use syslog from your firewalls?
Any serious firewalling requires logging and log analysis.
> 2) If so, what are you doing with the data?
Look at the data, analyze them.
> 3) Are you generating reports or using the raw data?
Both.
> 4) If reports are created, what are you using?
The tools vary depending on log format, type of firewall, customer/project
etc.
> 5) If you aren't creating reports, how is the data useful to you and
> why maintain it?
To look for sprecial events.
> 6) Do you and/or your customers care about what is traversing the
> firewall?
Depends on the customer.
Wolfgang
|