msibley
asked on
Log internet traffic in and out of network
In my business I have a windows network connected to the internet through a router. Recently we had a virus on one of the PCs that sent spam. Our ISP almost cancelled our account, but they were able to help us isolate the computer. Now, I'd like to set up a computer (probably a linux box) to act as a go between the network and internet so that I could log all traffic going in and out. Our router has a log function, but it seems to fill up to quickly. How would I do this?
Mark
Mark
SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
>>Our router has a log function, but it seems to fill up to quickly.
That is syslog (SystemLog).
Cheers,
Rajesh
That is syslog (SystemLog).
Cheers,
Rajesh
SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
>> Now, I'd like to set up a computer (probably a linux box) to act as a go between the network and internet so that I could log all traffic going in and out.
This is called a Firewall. Not only can it log, but it can also block traffic. Best practice is to block everything you don't specifically allow. Better firewalls log more and are easier to use. I would recommend Checkpoint. I've heard good things about Sonicwall - less expensive option. Cisco Pix are excellent, but a little more difficult to use.
Hope this helps.
This is called a Firewall. Not only can it log, but it can also block traffic. Best practice is to block everything you don't specifically allow. Better firewalls log more and are easier to use. I would recommend Checkpoint. I've heard good things about Sonicwall - less expensive option. Cisco Pix are excellent, but a little more difficult to use.
Hope this helps.
ASKER CERTIFIED SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
ASKER
Thanks. I found all of your suggestions to be informative, so I split the points.
Mark
Mark
ASKER
Mark