[syslog-ng]syslog-ng and security

joop jansen syslog-ng@lists.balabit.hu
Mon, 17 Nov 2003 05:13:45 -0800 (PST)


Hi,

I was wondering if anyone has experience with sanity
checking of syslog messages. 

I'm looking for a manner to filter syslog messages
such as: "set passwd ....", which could start commands
on a UNIX system.

Also, I use a webinterface to view the syslog messages
(like the vermeer.org). However I want to filter
syslog messages that could exploit browser
vulnerabilities.

Anyone experience with this or have some good advice ?

Thanks in advance for any help.

Carol Overes

__________________________________
Do you Yahoo!?
Protect your identity with Yahoo! Mail AddressGuard
http://antispam.yahoo.com/whatsnewfree