Re: Log file IDS package?
On Wednesday, 2005-01-12 at 16:57:41 +1100, Andrew Pollock wrote:
> Is there software in Debian that will do something along the lines of a tail
> -f of a given logfile, looking for supplied regexs and do custom actions on
> matches?
I'm using swatch. But swatch can only limit the number of actions
performed on a match, not perform an action if a count is exceeded. That
would need to be done in the script called when a match is found.
HTH,
Lupe Christoph
--
| lupe@lupe-christoph.de | http://www.lupe-christoph.de/ |
| Ask not what your computer can do for you |
| ask what you can do for your computer. |
Reply to: