[j-nsp] Screening logs on SRX

Andrew Jones ajones at staff.iinet.net.au
Wed Sep 8 04:12:56 EDT 2010


You can log events to a traceoptions file:

security {
 screen {
  traceoptions {
   file {
    <filename>;
    files x; (number of tracefiles)
    no-world-readable; | world-readable;
    size x; (max size)
    match regular-expression; (Can trim the traceoption as required to get your particular screens)
   }
   flag configuration | flow | all'
  }
 }
}

Not the cleanest or most resource friendly solution. 

-----Original Message-----
From: juniper-nsp-bounces at puck.nether.net [mailto:juniper-nsp-bounces at puck.nether.net] On Behalf Of Fahad Khan
Sent: Tuesday, 7 September 2010 6:02 PM
To: juniper-nsp at puck.nether.net
Subject: [j-nsp] Screening logs on SRX

Hi Folks,

Can some body tell me that how can I see the logs of the attack packets
generated by some source for let say "port scan", "IP spoof" etc

Thanks in adv,

regards,

Muhammad Fahad Khan
JNCIP - M/T # 834
IT Specialist
Global Technology Services, IBM
fahad at pk.ibm.com
+92-301-8247638
Skype: fahad-ibm
http://pk.linkedin.com/in/muhammadfahadkhan
_______________________________________________
juniper-nsp mailing list juniper-nsp at puck.nether.net
https://puck.nether.net/mailman/listinfo/juniper-nsp




More information about the juniper-nsp mailing list