1 Summary: Firewall log analyzer, report generator and realtime response agent
2 Summary(pl.UTF-8): Analizator logów firewalla, generator raportów i agent natychmiastowej odpowiedzi
7 Group: Applications/System
8 Source0: http://www.kybs.de/boris/sw/%{name}-%{version}.tar.bz2
9 # Source0-md5: 266974c417a7b973d3e54b64f95e9536
11 Source2: %{name}.sysconfig
12 Patch0: %{name}-paths.patch
13 URL: http://fwlogwatch.inside-security.de/
16 BuildRequires: zlib-devel
17 Requires(post,preun): /sbin/chkconfig
19 BuildRoot: %{tmpdir}/%{name}-%{version}-root-%(id -u -n)
21 %define _sysconfdir /etc/%{name}
24 fwlogwatch produces ipchains, netfilter/iptables, ipfilter, Cisco IOS
25 and Cisco PIX log summary reports in text and HTML form and has a lot
26 of options to find and display relevant patterns in connection
27 attempts. With the data found it can also generate customizable
28 incident reports from a template and send them to abuse contacts at
29 offending sites or CERT coordination centers. Finally, it can also run
30 as daemon and report anomalies or start countermeasures.
32 %description -l pl.UTF-8
33 fwlogwatch produkuje sumaryczne raporty w formacie tekstowym oraz HTML
34 z informacjami dostarczanymi przez logi ipchains, netfilter/iptables,
35 ipfilter, Cisco IOS oraz Cisco PIX. fwlogwatch ma wiele opcji
36 pozwalających znajdować określone wzorce w próbach połączeń. Na
37 podstawie tych danych może generować raporty o incydentach i wysyłać
38 je na adres abuse lub do centrów koordynacji CERT. Może on również
39 pracować jako daemon i informować o anomaliach oraz podejmować kroki
49 CFLAGS="%{rpmcflags} -Wall" \
50 LDFLAGS="%{rpmldflags}"
53 rm -rf $RPM_BUILD_ROOT
54 install -d $RPM_BUILD_ROOT{/etc/{rc.d/init.d,sysconfig},%{_sysconfdir}} \
55 $RPM_BUILD_ROOT{%{_sbindir},%{_mandir}/man8}
57 %{__make} install install-config \
58 INSTALL_DIR="$RPM_BUILD_ROOT%{_usr}" \
59 CONF_DIR="$RPM_BUILD_ROOT%{_sysconfdir}"
61 install %{SOURCE1} $RPM_BUILD_ROOT/etc/rc.d/init.d/%{name}
62 install %{SOURCE2} $RPM_BUILD_ROOT/etc/sysconfig/%{name}
65 rm -rf $RPM_BUILD_ROOT
68 %service %{name} restart
71 if [ "$1" = "0" ]; then
73 /sbin/chkconfig --del %{name}
77 %defattr(644,root,root,755)
78 %doc contrib/fw* AUTHORS CREDITS ChangeLog README
79 %attr(700,root,root) %dir %{_sysconfdir}
80 %attr(600,root,root) %config(noreplace) %verify(not md5 mtime size) %{_sysconfdir}/*
81 %attr(755,root,root) %{_sbindir}/*
82 %attr(754,root,root) /etc/rc.d/init.d/%{name}
83 %attr(640,root,root) %config(noreplace) %verify(not md5 mtime size) /etc/sysconfig/%{name}