RCS file: RCS/mysecrep,v Working file: mysecrep head: 0.8 branch: locks: strict access list: symbolic names: keyword substitution: kv total revisions: 10; selected revisions: 8 description: Generate a nightly report out of your snort.alert logfile. ---------------------------- revision 0.8 date: 2003/12/26 12:14:29; author: bart; state: Exp; lines: +34 -34 Cleanup code for snort-report. Added header for log or short logging. ---------------------------- revision 0.7 date: 2003/06/07 11:25:14; author: bart; state: Exp; lines: +27 -9 Added portscan-logging as priority 3. Resolved bug for "first 9 days" logging: "15 May" vs "9 May" (see the extra space). ---------------------------- revision 0.6 date: 2003/05/15 12:48:51; author: bart; state: Exp; lines: +50 -4 branches: 0.6.1; Added Samhain log reporting. ---------------------------- revision 0.5 date: 2003/05/13 20:21:38; author: bart; state: Exp; lines: +41 -16 Some code cleanup. Added long / short report format, this means included / excluded the "Classification" messages within the snort log. ---------------------------- revision 0.4 date: 2003/05/11 20:03:33; author: bart; state: Exp; lines: +6 -6 Made pattern-matching tighter, to solve a problem between snort and pcds. ---------------------------- revision 0.3 date: 2003/05/11 19:04:30; author: bart; state: Exp; lines: +42 -8 Added first reporting from pcds. ---------------------------- revision 0.2 date: 2003/05/11 18:05:52; author: bart; state: Exp; lines: +64 -48 Updated log settings, added reverse logging, added mail of report, and a lot of debugging. ---------------------------- revision 0.1 date: 2003/05/11 13:13:51; author: bart; state: Exp; First setup, lots needs to be done. ---------------------------- =============================================================================