Differences between revisions 3 and 4
Revision 3 as of 2009-11-25 00:02:35
Size: 195
Comment:
Revision 4 as of 2009-11-25 00:07:47
Size: 402
Comment:
Deletions are marked like this. Additions are marked like this.
Line 6: Line 6:
 * Consider logger+hostname alternative for linking source_ip.log with host.
  * Could just be an init script entry. Ignore excessive dns updates
  * Or another named pipe in syslog-ng to filter requests

Notes

  • Cleanup rules in initialize.fw
  • Drop a /8's in initialize.fw with --dport 22 to squelch botnets
  • Finalize host reporting syntax
  • Native munin, less snmpd-only reporting
  • Consider logger+hostname alternative for linking source_ip.log with host.
    • Could just be an init script entry. Ignore excessive dns updates
    • Or another named pipe in syslog-ng to filter requests

CabNotes (last edited 2009-11-25 00:13:52 by JasonMcArthur)