Project

General

Profile

Actions

Task #1019

closed

Attach our central syslog server as data source for our instance of Warden/Mentat

Added by Jan Mach about 8 years ago. Updated 5 months ago.

Status:
Closed
Priority:
Normal
Assignee:
-
Category:
Installation
Target version:
Start date:
05/31/2013
Due date:
% Done:

0%

Estimated time:
To be discussed:

Description

There are lots of interesting data just lying around on the hard drives.

Actions #1

Updated by Jan Mach over 4 years ago

  • Target version changed from 15 to Backlog
Actions #2

Updated by Jan Mach almost 3 years ago

  • Subject changed from Připojení centálního syslog serveru to Attach our central syslog server as data source for our instance of Warden/Mentat
  • Description updated (diff)
Actions #3

Updated by Pavel Kácha almost 3 years ago

  • SSH bruteforces
  • Migrate spam fail2ban
  • Chat with DNS Master
  • ?
Actions #4

Updated by Pavel Kácha 5 months ago

  • Status changed from New to Closed
  • Assignee deleted (Jan Mach)

Does not belong into Mentat, however:

Pavel Kácha wrote in #note-3:

  • SSH bruteforces

Now getting off with more data on central logserver.

  • Migrate spam fail2ban

Ditto.

  • Chat with DNS Master
  • ?

No interesting info in DNS logs (would need more detailed logging, which is unfeasible performance-wise), however Passive DNS may get up to the task.

Actions

Also available in: Atom PDF