EFW Support

Support => General Support => Topic started by: Flv on Thursday 24 August 2017, 09:33:22 pm



Title: cron log reports.
Post by: Flv on Thursday 24 August 2017, 09:33:22 pm
Hello folks,
how u doin'?
I'm running an Endian 4i Edge 313, ver 5.0.3, appliance.
On Logs and Reports page I can print out various logs. Doing manually once a month is acceptable.
Now I'm in the need to print daily an intrusion detection report.
Is there a way to cron such operation, and receive via mail or grab via scp the report itself?
On the GUI, the link drives through /manage/reporting/attack

the locate attack command output is:
root@host:~ # locate attack
/usr/lib/python2.7/site-packages/endian/reporting/commands/attack.pyc
/usr/lib/python2.7/site-packages/endian/reporting/events/middleware/attack.pyc
/usr/lib/python2.7/site-packages/endian/reporting/web/controllers/attack.pyc
/usr/lib/python2.7/site-packages/endian/reporting/web/static/js/attack.js
/usr/lib/python2.7/site-packages/endian/reporting/web/templates/attack.mak
/usr/lib/python2.7/site-packages/endian/reporting/web/widgets/attack.pyc
/var/signatures/snort/auto/emerging-attack_response.rules
/var/signatures/snort/auto/emerging-attack_response.rules.CLEAN
/var/signatures/snort/processed/auto/emerging-attack_response.rules
/var/signatures/snort/processed/auto/emerging-attack_response.rules.pkl

what shoulda use?

thanks