Netgate SG-1000 microFirewall

Author Topic: syslog fwevents and regex.  (Read 1824 times)

0 Members and 1 Guest are viewing this topic.

Offline vleinone

  • Newbie
  • *
  • Posts: 18
  • Karma: +0/-0
    • View Profile
syslog fwevents and regex.
« on: June 01, 2006, 12:45:35 am »
Hi all,

I wonder if anyone here can help me, but i ask anyway :)

I syslog my firewall events to my correlation engine and as you know ip's and port are preset is something like this 192.168.0.1.80 > 10.0.0.1.1024
now i want to filter out everything else, but not that portnumber in one regex line. Any suggestion how i do that?

Br,

Ville