On Mon, 2010-02-22 at 18:14 -0600, Dale W. Carder wrote: > Take a look at SLCT, also by Risto Vaarandi: > > http://ristov.users.sourceforge.net/slct/ > > SLCT can parse huge amounts of logs very fast. We use it to > crunch firewall logs and also to find ports that are flapping > excessively.
+1, SLCT definitely finds the needles in haystacks of huge syslog files Gord -- best viewed in mailx