Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations strongm on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

A decent logging tool for Cisco Pix/Fwsm

Status
Not open for further replies.

Xpid

IS-IT--Management
Apr 17, 2002
4
PE
Hi there.
I come from the Checkpoint Firewall-1 land where there's a tool called CheckPoint Log Viewer where you can watch,storage,export,query,make filters to the logs generated by CheckPoint Firewalls.
However, due to some issues related to Checkpoint we had to move to Cisco FWSM.Now I am facing this problem which is that i can't do all the analysis/tasks i used to do in CheckPoint Log Viewer with the tool that Cisco offers for logging: Syslog :p
Can anyone recommend any free/not free tool that has those facilities.
I've tested Cisco Security Monitor 2.0 but it's a web+java based interface and it basically shows events categorized in customized views (deny inbound connections,no xlates,summary) and severy levels.
What about netforensics?
I'm not asking for a CheckPoint Log Viewer look alike tool, i am asking for a tool with decent log features.

Thanks

Xpid
 
I just got done demo'ing Sawmill which is pretty good at analyzing your logs... you can do complete break-downs, but depending on how in-depth you would like to get would determine just how valuable this product would be to you..

BTW ... it does the MOTHERLOAD of logs ... not just CISCO stuff

 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top