[syslog-ng]Information request

Rui Teixeira syslog-ng@lists.balabit.hu
Mon, 22 Sep 2003 15:44:58 -0700


This is a multi-part message in MIME format.

------=_NextPart_000_0025_01C38120.7A2C5C50
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Transfer-Encoding: quoted-printable

Hi to all,

I'm a student finishing a degree in Computer Science (Informatic =
Engenier)  with a final project with the name "XML - based Logging =
Platform".

The main ideia of the project is to convert the current log's into XML =
so that they can be kept in disk for future use (backup) and inserted in =
a Database.

I know that most of you may think the use of XML may be unnecessary, but =
i'm thinking in making a standart so that future student's may upgrade =
my work and use with other system's.

The final part of the project will be making a web interface so that an =
admin may search the log's for specific information sothat he can =
compare different services log's to find some sort of information.=20

    - a quick example is to find someone connected in a network by DHCP =
( you only know the mac address and the ip that DHCP released) by =
crossing their ip with the log generated by the pop3d service. with this =
you can find the username and associate the machine to a person.

This is just a quick example of the possibilities of crossing the =
information in a quick and easy way.

The main reason for me to write to this list is my interest in using =
Syslog-ng to generate (if possible) my XML format and to send the data =
to a secure machine where the infrormation will be kept.=20

My biggest questions are:
                                    -  can i change the syslog-ng code =
to a academic work
                                    -  does the team behind syslog-ng =
intend to make a simmilar system in a near future
                                    -  and if is it viable to use =
Syslog-ng to write my XML standard and send it to a secure machine

Thanks in advance

Rui Teixeira








------=_NextPart_000_0025_01C38120.7A2C5C50
Content-Type: text/html;
	charset="iso-8859-1"
Content-Transfer-Encoding: quoted-printable

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN">
<HTML><HEAD>
<META http-equiv=3DContent-Type content=3D"text/html; =
charset=3Diso-8859-1">
<META content=3D"MSHTML 6.00.2716.2200" name=3DGENERATOR>
<STYLE></STYLE>
</HEAD>
<BODY bgColor=3D#ffffff>
<DIV><FONT face=3DArial size=3D2>Hi to all,</FONT></DIV>
<DIV><FONT face=3DArial size=3D2></FONT>&nbsp;</DIV>
<DIV><FONT face=3DArial size=3D2>I'm a student finishing a degree in =
Computer=20
Science (Informatic Engenier)&nbsp; with a final project with the name =
"XML -=20
based Logging Platform".</FONT></DIV>
<DIV><FONT face=3DArial size=3D2></FONT>&nbsp;</DIV>
<DIV><FONT face=3DArial size=3D2>The main ideia of the project is to =
convert the=20
current log's into XML so that they can be kept in disk for future use =
(backup)=20
and inserted in a Database.</FONT></DIV>
<DIV><FONT face=3DArial size=3D2></FONT>&nbsp;</DIV>
<DIV><FONT face=3DArial size=3D2>I know that most of you may think the =
use of XML=20
may be unnecessary, but i'm thinking in making a standart so that future =

student's may upgrade my work and use with other system's.</FONT></DIV>
<DIV><FONT face=3DArial size=3D2></FONT>&nbsp;</DIV>
<DIV><FONT face=3DArial size=3D2>The final part of the project will be =
making a web=20
interface so that an admin may search the log's for specific information =
sothat=20
he can&nbsp;compare different services log's to find some sort of =
information.=20
</FONT></DIV>
<DIV><FONT face=3DArial size=3D2></FONT>&nbsp;</DIV>
<DIV><FONT face=3DArial size=3D2>&nbsp;&nbsp;&nbsp; - a quick example is =
to find=20
someone connected in a network by DHCP ( you only know the mac address =
and the=20
ip that DHCP released) by crossing their ip with the log generated by =
the pop3d=20
service. with this you can find the username and associate the machine =
to a=20
person.</FONT></DIV>
<DIV><FONT face=3DArial size=3D2></FONT>&nbsp;</DIV>
<DIV><FONT face=3DArial size=3D2>This is just a quick example of the =
possibilities=20
of crossing the information in a quick and easy way.</FONT></DIV>
<DIV><FONT face=3DArial size=3D2></FONT>&nbsp;</DIV>
<DIV><FONT face=3DArial size=3D2>The main reason for me to write to this =
list is my=20
interest in using Syslog-ng to generate (if possible) my XML format and =
to send=20
the data to a secure machine where the infrormation will be kept. =
</FONT></DIV>
<DIV><FONT face=3DArial size=3D2></FONT>&nbsp;</DIV>
<DIV><FONT face=3DArial size=3D2>My biggest questions are:</FONT></DIV>
<DIV><FONT face=3DArial size=3D2>&nbsp;&nbsp;&nbsp; &nbsp;&nbsp;&nbsp;=20
&nbsp;&nbsp;&nbsp; &nbsp;&nbsp;&nbsp; &nbsp;&nbsp;&nbsp; =
&nbsp;&nbsp;&nbsp;=20
&nbsp;&nbsp;&nbsp; &nbsp;&nbsp;&nbsp; &nbsp;&nbsp;&nbsp; -&nbsp; can i =
change=20
the syslog-ng code to&nbsp;a academic work</FONT></DIV>
<DIV><FONT face=3DArial size=3D2>&nbsp;&nbsp;&nbsp; &nbsp;&nbsp;&nbsp;=20
&nbsp;&nbsp;&nbsp; &nbsp;&nbsp;&nbsp; &nbsp;&nbsp;&nbsp; =
&nbsp;&nbsp;&nbsp;=20
&nbsp;&nbsp;&nbsp; &nbsp;&nbsp;&nbsp; &nbsp;&nbsp;&nbsp; -&nbsp; does =
the team=20
behind syslog-ng intend to make a simmilar system in a near =
future</FONT></DIV>
<DIV><FONT face=3DArial size=3D2>&nbsp;&nbsp;&nbsp; &nbsp;&nbsp;&nbsp;=20
&nbsp;&nbsp;&nbsp; &nbsp;&nbsp;&nbsp; &nbsp;&nbsp;&nbsp; =
&nbsp;&nbsp;&nbsp;=20
&nbsp;&nbsp;&nbsp; &nbsp;&nbsp;&nbsp; &nbsp;&nbsp;&nbsp; -&nbsp; and if =
is it=20
viable to use Syslog-ng to write my XML standard and send it to a secure =

machine</FONT></DIV>
<DIV><FONT face=3DArial size=3D2></FONT>&nbsp;</DIV>
<DIV><FONT face=3DArial size=3D2>Thanks in advance</FONT></DIV>
<DIV><FONT face=3DArial size=3D2></FONT>&nbsp;</DIV>
<DIV><FONT face=3DArial size=3D2>Rui Teixeira</FONT></DIV>
<DIV><FONT face=3DArial size=3D2></FONT>&nbsp;</DIV>
<DIV><FONT face=3DArial size=3D2></FONT>&nbsp;</DIV>
<DIV><FONT face=3DArial size=3D2></FONT>&nbsp;</DIV>
<DIV><FONT face=3DArial size=3D2></FONT>&nbsp;</DIV>
<DIV><FONT face=3DArial size=3D2></FONT>&nbsp;</DIV>
<DIV><FONT face=3DArial size=3D2></FONT>&nbsp;</DIV>
<DIV><FONT face=3DArial size=3D2></FONT>&nbsp;</DIV></BODY></HTML>

------=_NextPart_000_0025_01C38120.7A2C5C50--