Install logcheck, it comes from the same people as portsentry.

psionic.com I think it is...

logcheck basically goes through your logs and can email you all the alerts,
(or just the portsentry alerts.)

its fully configurable, ,and I think it comes with mdk7.2 and 8, you might
want to check your CD's or go to rpmfind.net.


rgds

Frank

-----Original Message-----
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED]]On Behalf Of J. C. Woods
Sent: Wednesday, 15 August 2001 6:13 AM
To: [EMAIL PROTECTED]; [EMAIL PROTECTED]
Cc: [EMAIL PROTECTED]
Subject: Re: [expert] Alert System


> "Eduardo P. Rom�n O." wrote:
>
> Who knows, a good alert system for my Linux. I installed portsentry,
> but i don�t know how to do get a mail from this alert attacks.
>
> EPRO

If you are looking for a good IDS, take a look at http://www.snort.org.
This IDS has some very nice features, and, when working with some
associated programs, such as ACID, will allow you flexibility. And, then
again, there is the standby "tcpdump".

drjung

--
J. Craig Woods
UNIX SA

-Art is the illusion of spontaneity-



Want to buy your Pack or Services from MandrakeSoft? 
Go to http://wwww.mandrakestore.com

Reply via email to