23 Feb
2010
23 Feb
'10
6:12 a.m.
On Mon, 2010-02-22 at 18:14 -0600, Dale W. Carder wrote:
Take a look at SLCT, also by Risto Vaarandi:
http://ristov.users.sourceforge.net/slct/
SLCT can parse huge amounts of logs very fast. We use it to crunch firewall logs and also to find ports that are flapping excessively.
+1, SLCT definitely finds the needles in haystacks of huge syslog files Gord -- best viewed in mailx