| Kiwi Syslog Daemon's function is primarily to listen for syslog messages sent by your devices, to the port(s) that it is bound to. We do not have any reporting functionality. Because each type of device generates syslog messages in different formats, it is very hard to know them all. There are various websites which discuss what to look for in your logs and some good reporting tools available to help you. We recommend you check out www.loganalysis.org for information on the logs themselves. If you want to create reports from the logs, then we recommend that you visit RnR Software for ReportGen. They currently have versions available which specifically support Cisco PIX, SonicWall, GNATBox and NetScreen. If you are wanting to keep on eye on internet access by employees over the network; what we recommend is that you turn on the URL logging on your device/s, then run hourly reporting. Reports can be created based on the users Internet activity. It takes the log files and displays a user-selected report in a web browser. For a powerful, hierarchical log analysis tool that runs on every major platform, we recommend the you use Sawmill created by Flowerfire. It is particularly well suited to web server logs, but can process almost any log. Also, have a look at FireGen's log analyzers which are a line of products developed for analyzing firewall logs, at Firegen. |
