2002-10-28 ---------- * release 1.10 * fix off-by-one hour error in syslog parsing when changing from daylight saving time * support portscan2 (Snort 1.9.0) 2002-09-09 ---------- * release 1.9 (internal) * embed Parse::Syslog 1.01 * more precise regular expression, less backtracking in case of non-match 2002-03-01 ---------- * link www.snort.org instead of defunct www.whitehats.com * correctly ignore spp_stream4 output 2002-02-20 ---------- * fix parsing of ICMP alerts 2002-02-14 ---------- * release 1.8 * updated Parse::Syslog to version 0.05 * support fast-log format for snort 1.8.3 (bug reported by Maarten de Vries ) 2001-10-29 ---------- * release 1.7 * compatibility with Snort 1.8.1-RELEASE (jim.herbert@actis.co.uk, ABuser@UnConundrum.com) 2001-09-04 ---------- * released 1.6 * fast-logs: recognize {TCP}/{UDP} and portscans (mdavids@forfun.net) 2001-08-24 ---------- * use only once decimal for percentages 2001-08-24 ---------- * released 1.5 * embed the Parse::Syslog and Text::Table in the script for easier installation * implemented --narrow * implemented --text-width 2001-08-17 ---------- * released 1.4 * use the Parse::Syslog module 2001-08-07 ---------- * fix sorting of HIGH alerts at top of list * sort first to alert and then to host for remote,alert and local,alert reports 2001-07-31 ---------- * released 1.3 * fixed syslog parsing for FreeBSD and Linux (ethgen@ee.ethz.ch, bjorn@linpro.no, gerald@ethereal.com) 2001-07-25 ---------- * add "type" column to portscan report 2001-07-18 ---------- * released 1.2 * compatibility with Perl 5.005 2001-07-17 ---------- * fix portscan regexp * released 1.1 * implemented multiple sources with --source * implemented 'fast' source * compatibility with older Getopt::Long 2001-07-16 ---------- * released 1.0