1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37
|
README
------
jail (just another ICMP logger) is a small program which runs in the
background, and can be configured to log at different syslog levels the
reception of various ICMP packets. jail is distributed under the Artistic
License, a copy of which is included in this distribution.
jail comes with no warranty, express or implied, of either function or
functionality. If it breaks...well, keep the pieces.
jail is derived from iplogger, and provides more configurability and better
logging options. It also bears a slight resemblance to icmpinfo.
jail recognises the following ICMP packet types (</usr/include/linux/icmp.h>):
ECHOREPLY, DEST_UNREACH, SOURCE_QUENCH, REDIRECT, ECHO, TIME_EXCEEDED,
PARAMETERPROB, TIMESTAMP, TIMESTAMPREPLY, INFO_REQUEST, INFO_REPLY, ADDRESS
and ADDRESSREPLY. If a packet with an undefined type is received, the numeric
value of the type is logged instead of its name.
It has four logging levels: IGNORE, NOTIFY, INFORM and WARN, corresponding
to the syslog(3) levels. All messages are logged with the LOG_DAEMON
facility, and specify the type and source of the packet. jail can also be
configured not to perform name lookups on the source IP.
Currently, jail is linux-specific. I should do something about this.
Read the INSTALL file for installation instructions.
Read the icmplog(8) and the icmplog.conf exaple for instructions on
setting up and using icmplog.
You may also want to see iplogger and icmpinfo at:
http://sunsite.unc.edu/pub/Linux/system/network/daemons/iplogger.tar.gz
http://sunsite.unc.edu/pub/Linux/system/network/admin/icmpinfo-1.11.tar.gz
crab@wiw.org (Abhijit Menon-Sen)
http://www.wiw.org/~crab/linux/jail/
|