I'd like to set up the syslog email, but only for snort's messages. Anyone know how to filter on the keyword like I can in the local syslog display? Doesn't...
Unless Snapgear's use a new-ish syslogger, like msyslog, or the superior syslog-ng, then there's likely no way to filter/organize the logs before they're sent....
I have a SG580 SecureComputing/SG580 Version 3.1.5u4 -- Thu, 07 Feb 2008 19:00:41 +1000 Linux version 2.4.31-uc0 (build@sgbuild) (gcc version 3.3.2) #1 Thu Feb...
the syslog has a built-in e-mail filter. no special magic for filtering available, sorry. thinking about a new syslogd not least in order to avoid carnage ...
... Any possibility you could get a 2nd ip address on the snapgear? That would really be the easiest way. Asking users to change the port on their remote...
... This smells to me like a client issue. I'm going to venture a guess this isn't the pptp client built into xp/vista, right? Any chance you can test the...
... Thanks Tom! Nice to see you watch this forum. :) While probably doable, that is a somewhat complicated solution and would probably take more time than...
Anyone use a snapgear for a reverse proxy? Have an SG720 in front of a web server. I'd like external requests to pass through the proxy (ideally to somehow act...
... On the syslog display screen (and email tab), I can filter on "Absolutely Everything"/etc. If I could make snort show under the "All Error Conditions"...
OK, how about send the email reports to a Gmail account, and setup a filter that just grabs the Snort log entries... then send those to another email address...
... Yes, its a fine workaround if you could convince snort to change the relevant syslog arguments to 'error' (or whatever). But you can't. well, not without...
I'm having problems with an exchange server not able to deliver emails with attachments. Our ISP email service provider says the smtp connector is working OK...
Thanks for your help phoenixweasel. I guess the 2nd IP address is the best option, that way users have two choices about which endpoint they connect to -...
... The only thing on a 560 that looks at smtp is TrustedSource, and that of course only if it is enabled. And it currently does not look at the inside of the...
... Do you have it virus checking SMTP? If you do, try turning it off just to see if that helps. Might be how much space you've alloted to the scanner, number...
Any suggestion to trouble-shoot intermittent VPN connection problem. ... I've a problem from my client. They have IPSec VPN between multiple SG560 & SG300. ...
... this sounds like you are saying that the ping got to the other side of a/the vpn tunnel, but then got no further. So the VPN had to be working for that to...
I have an issue with some of the SG300 network LAN side interfaces going dead. I have a network device that is connected directly to port 3 of a SG300. Port 4...
There won't be much in the way of log data (nothing really), because you're not really using the CPU to do anything - your just using the switch - the CPU...
We have many Snapgear units deployed and have different login names for different functions. This all works fine. The problem we have is changing the user...
Hi Dwayne, hope things are going well :) ... Changing the password forces a re-auth. With any luck that can be made to fit your workflow. SG 4 has/will-have a...
Hi, Can anyone help me on how to route Outgoing packets/connections. I have two Internet Connections, on port A2 and Port B. I would like to route all...
Afternoon all, I have an SG565 that's set up to run as a PPTP server for our office VPN. Clients are able to log in with no problems and access things like...
... If you've left the default packet filters on, it's very likely that 'Block Windows networking' rules are the source of the issue. If not, either look at...
Have you tried Policy Routing? Network Setup -> Routes -> Policy Routes Define a Service under 'Definitions' in the main menu which has the ports in it that...
Okay, so I have disabled the block winows share filter, and it seems to be working with the Apple Mac. But still not on Vista; I've tried entering the share...