>-----Original Message----- >From: Ama Kalu [mailto:ama.kalu@cwlgroup.net] >Sent: Wednesday, November 19, 2003 9:07 PM >To: ''Tom Eastep'' >Subject: RE: [Shorewall-users] logwatch > >Thanks Tom and Andrew, > >About 2 months ago, I setup the most current (at the time) version of >logwatch, it required a service filter for IPTABLES which I did nothave>time to write myself so I found one on the net and set it up, but I >couldn''t get the log analysis to work. > >Your website says you use logwatch so I naturally chose it andyesterday>when I made the request, I was asking for your copy of that servicefilter.>You sent the logwatch kernel script itself but it was also helpful. >From it >I determined that I had setup an even later version of logwatch andperhaps>for the wrong distro. > >I went to the logwatch website and downloaded the latest stable version >5.0. You were right, after setting the basic parameters, it worked likea>dream in 10 minutes. > >Thank you > >Ama > > >>-----Original Message----- >>From: Tom Eastep [mailto:teastep@shorewall.net] >>Sent: Tuesday, November 18, 2003 9:10 PM >>To: ama.kalu@cwlgroup.net >>Subject: RE: [Shorewall-users] logwatch >> >>On Tue, 2003-11-18 at 11:53, Ama Kalu wrote: >> >>> >>> # The only requirement is that all your ''iptables'' which LOG should >>> # set their --log-prefix ''IPTABLES '' >>> >>> All the entries in the log start with the date, Do you think thatmight>>> be the problem, can I have a look at your iptables filter forlogwatch?>>> >> >>Attached. >> >>-Tom >>-- >>Tom Eastep \ Nothing is foolproof to a sufficiently talented fool >>Shoreline, \ http://shorewall.net >>Washington USA \ teastep@shorewall.net