syslog monitoring script

2007-12-25 9:33:00

I want to monitor syslog and respond appropriately -- page, e-mail -- upon

certain events, and I had questions about how to accomplish a particular

detail in my code.

The uniform response was not to reinvent the wheel but to use swatch,

PERL-based code produced at Stanford.

ftp://ftp.stanford.edu/general/security-tools/swatch

ftp://coast.cs.purdue.edu/pub/tools/unix/swatch/

I've implemented it, and in fact received a page late last night for a

particularly painful failure which it detected.

Thanks to:

Mark Bergman <bergman@phri.nyu.edu>

Rachel Polanskis <rachel@juno.virago.org.au>

Rich Kulawiec <rsk@itw.com>

Todd Boss <boss@netcom.com>

"Karl E. Vogel" <vogelke@c17mis.region2.wpafb.af.mil>

Andi Paton <apaton@wtl1.demon.co.uk>

Peter Bestel <peter.bestel@uniq.com.au>

Clemens Schmuck <clemens@wst.edvz.sbg.ac.at>

Rich Casto <rich@loopexpert.com>

David Steiner <dsteiner@brynmawr.edu>

John Stoffel <jfs@fluent.com>

Rasana Atreya <atreya@library.ucsf.edu>

--sk

Stuart Kendrick

Network Services

FHCRC

Comments

Got something to say?

You must be logged in to post a comment.