Gentoo Archives: gentoo-user

From: Stroller <stroller@××××××××××××××××××.uk>
To: gentoo-user@l.g.o
Subject: Re: [gentoo-user] Re: Advice for System monitor + Intrusion Detection tools?
Date: Mon, 22 Nov 2010 21:05:35
Message-Id: 5B24A932-B669-4927-9827-BD6ABE3F5059@stellar.eclipse.co.uk
In Reply to: [gentoo-user] Re: Advice for System monitor + Intrusion Detection tools? by Lubos Kolouch
1 On 22/11/2010, at 8:29am, Lubos Kolouch wrote:
2 > Stroller, Fri, 19 Nov 2010 22:06:57 +0000:
3 >> On 19/11/2010, at 8:45pm, Fatih Tümen wrote:
4 >>> I just want to beware of anything unusual instantly, preferably by
5 >>> email. This is a single or two user laptop.
6 >>
7 >> I've been meaning for some time to look for something like this myself.
8 >> I'm personally only interested in messages from the RAID controller, and
9 >> I'm not sure that I'm a high-risk for intrusion, but I do want to know
10 >> about it *immediately* if a drive fails, so that ideally I can pop into
11 >> the store on the way home and pick up a new disk to replace the one that
12 >> failed.
13 >
14 > Seems to me like a use case for nagios
15
16 This makes it appear waaay overkill for my purposes:
17 http://www.nagios.org/about/screenshots
18
19 All I want is a simple email notification when $string appears in the log.
20
21 I'm actually a little surprised that there isn't a syslogger which can parse stuff as it writes it out, and thus perform actions, such as mailing. I'm assuming there isn't, since no-one has mentioned it.
22
23 Stroller.

Replies

Subject Author
Re: [gentoo-user] Re: Advice for System monitor + Intrusion Detection tools? Alan McKinnon <alan.mckinnon@×××××.com>
Re: [gentoo-user] Re: Advice for System monitor + Intrusion Detection tools? Alex Schuster <wonko@×××××××××.org>