Hello,
I am pleased to announce the ETPLC update 23 Jun 2014.
New version support McAfee Web Gateway proxy logs on perl script now. (Python soon)
At this time, default mwg proxy logs doesn't offer (http) Referer reducing ETPLC alerting.
For example, How to simply start:
cat /var/log/messages | perl etplc_21jun2014a.pl -f emergingall_sigs23jun2014a_snort290b.rules.gz -c All
cat /var/log/messages | python etplc_24may2014a.py -f emergingall_sigs23jun2014a_snort290b.rules.gz -c All
And check output.
Please comments / feedbacks.
Download : http://etplc.org/download.html http://sourceforge.net/projects/etplc/
Regards @Rmkml
Log in to post a comment.
Hello,
I am pleased to announce the ETPLC update 23 Jun 2014.
New version support McAfee Web Gateway proxy logs on perl script now.
(Python soon)
At this time, default mwg proxy logs doesn't offer (http) Referer reducing ETPLC alerting.
For example, How to simply start:
cat /var/log/messages | perl etplc_21jun2014a.pl -f emergingall_sigs23jun2014a_snort290b.rules.gz -c All
cat /var/log/messages | python etplc_24may2014a.py -f emergingall_sigs23jun2014a_snort290b.rules.gz -c All
And check output.
Please comments / feedbacks.
Download :
http://etplc.org/download.html
http://sourceforge.net/projects/etplc/
Regards
@Rmkml