myNetWatchman Perl Agent is a client for myNetWatchman.com. This program is designed to capture rejected packet information from various firewall logs and forward this attack information to central analysis servers at myNetWatchman.com, which then analyze events and escalate to the provider of the source.
|Tags||Monitoring Networking Firewalls|
|Operating Systems||POSIX BSD FreeBSD Linux Solaris|
Release Notes: The Portsentry regexp has been modified slightly to pickup unknown/illegal scan types. There is a check for iptables whether the protocol value is valid or not.
Release Notes: Fixes to timestamps for Sonic Wall log files and erroneous destruction of the ServerConnection object.
Release Notes: No longer forcing connection closure for filtered events, and a fix for a bug when deal with address exchanging.
Release Notes: Support for NetBSD ipfilter and NetScreen firewall logs, breaking out some of the code into Perl object modules for handling Event, Log, and Filter storage, implementing HTTP keepalives to provide a robust upload mechanism, recoded dequeue logic, and new event stack thresholds.
Release Notes: This release no longer uses the 'chain' concept with iptables, which proved to be too much of a hassle. It uses GMT offset with date/time decoding fallback. The source port is passed to the mNW server.