[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[cobalt-users] swatch



Hello:

Just a bit of info I found on swatch:

ftp://coast.cs.purdue.edu/pub/tools/unix/
ftp://coast.cs.purdue.edu/pub/tools/unix/logutils/swatch/


Thank you for your interest in swatch: the Simple WATCHdog.

Swatch was originally written to actively monitor messages as
they are written to a log file via the UNIX syslog utility. For
a simple demonstration type "perl swatch --examine=FILENAME" with
FILENAME being the file that you would like to see the contents of.
All this example will do is demonstrate the different text modes
that are available with to the echo action.

Also, from Maximum Security Hackers guide to protecting your Internet
site and Network::

The authors wrote Swatch to supplement logging capabilities of out of
the box Unix systems. Swatch, consequently has logging capabilities that
far exceed your run of the mill syslog. Swatch provides real time
monitoring, logging and reporting. Because swatch is written in Perl, it
is both portable and extensible.

Features:

-A "backfinger" utility that attempts tp grab finger infor from
attacking host
-Support for instant paging (so you can receive up to minute reports)
-Conditional execution of commands ( if this condition is found in a log
file, do this)

Swatch relies on local config files. Multiple config files can exist on
the same machine. Any local user with adequate privelages can use
Swatch.

See ya!

joann