★ wanayoo — archive 1999 http://www.linuxsecurity.com/articles/host_security_article-3527.htmlNouvelle recherche | Portail wanayoo
Advertise Here

   
Documentation
Security Sources
Forums
Firewalls
Host Security
Cryptography
Network Security
Intrusion Detection
Organizations/Events
Server Security
Vendors/Products
Projects
General
Privacy
Government
Hacks/Cracks
 
News: Host Security 8/19/2001 11:41

Checking Your System Logs with awk

SysAdmin
Posted By: Benjamin D. Thomas
8/19/2001

UNIX systems are especially talkative and log considerable amounts of data. Many administrators at first find digging through all those logs annoying, and some abandon the practice of checking logs for that reason. However, when system problems arise, those admins are left wondering what occurred and why. Because there is so much data to sift through on a regular UNIX system, efficiency must be sought to make sense of all of this data and keep a watchful eye on your system.

My tool of choice to solve this matter is the awk language. Originally, I used grep in a rather wieldy shell script, and didn't want to port it to Perl. I found that awk provided a bit more flexibility than my sometimes convoluted shell script, worked very well for the ordered structure of log files, and had better regular expression handling than grep. I will show several notification items that can be readily picked out, and put them together in an awk script to parse log files in a pretty quick manner.


Click here to go to this article.

PGP opens up complete encryption source code
Sep 7

Quantum Crypto to the Rescue
Sep 7

Linux Trojan spotted in the wild
Sep 7

Inside Jail
Sep 7

Linux Advisory Watch - September 7th 2001
Sep 7

Linux users warned of new Trojan danger
Sep 6

Security experts protest copyright act
Sep 6

Contact Us | Legal Notice | About Our Site
© Guardian Digital, Inc., 2000