> *Subject:* Re: [twsocket] Monitor sockets components
> *From:* "Maurizio Lotauro" <[EMAIL PROTECTED]>
> >The source and executables are available from:
> 
> >http://www.magsys.co.uk/download/software/monsock1.zip
> 
> I downloaded it today, but I see only one executable.

Sorry, the latest version did not uploaded for some reason, but the web 
site is now updated with the latest versions of the monitor components.

Early next week I plan on writing a SYSLOG component, to capture and 
parse the traffic records generated by my Sonicwall firewall, into the 
same format used by my raw socket and winpcap components, as a third 
means of monitoring internet traffic.  Many of the better ADSL routers, 
such as Draytek, also provide syslog, although it will need some 
research to see if there is any commonality between the packet formats, 
this is an example of the Sonicwall output:  

2005-07-18 06:01:01     Local0.Info     sonicwall       id=firewall 
sn=00401017007B time="2005-07-18 06:01:01" fw=82.43.49.37 pri=6 
c=262144 m=98 msg="Connection Opened" n=2355319 
src=217.146.105.135:20:WAN dst=192.168.1.109:3970:LAN proto=tcp/ftp 

2005-07-18 06:01:11     Local0.Info     sonicwall       id=firewall 
sn=00401017007B time="2005-07-18 06:01:11" fw=82.43.49.37 pri=6 c=1024 
m=537 msg="Connection Closed" n=141007 src=192.168.1.109:3967:LAN 
dst=217.146.105.135:21:WAN proto=tcp/ftp sent=1840 rcvd=2314 

Angus
-- 
To unsubscribe or change your settings for TWSocket mailing list
please goto http://www.elists.org/mailman/listinfo/twsocket
Visit our website at http://www.overbyte.be

Reply via email to