I would love to take all my denied syslog events and summarize the attacks. Does anyone know of open source that can do that? I am not talking about summarizing the log messages but for instance the attempts on port 5060, SQL injection, etc .... Mike