Features: |
1. Web interface to import Fireware log files in to a MySQL database. (screenshot)
2. Command Line Interface (CLI) (25% faster then web interface) to import Fireware log files in to the MySQL database. (screenshot)
3. Reports on:
Allowed Packets:
- Top x allowed src IP's.
- Top x allowed dst IP's.
- Top x allowed src ports.
- Top x allowed dst ports.
Denied Packets:
- Top x denied src IP's.
- Top x denied dst IP's.
- Top x denied src ports.
- Top x denied dst ports. (screenshot 1) - (screenshot 2)
Notify:
- Block Site.
- Blocked Ports.
- Denial-of-Service attacks.
- IPS.
- Spoofing Dos.
- System
DNS Proxy:
- Query Type.
- Query Type Match.
- Question Match.
HTTP Proxy:
- Top Site's:
- Top x site's (total).
- Top x site's (incomming).
- Top x site's (outgoing). (screenshot)
- Top x site's (connections).
- Top Users/IP's:
- Top x users (total).
- Top x users (incomming).
- Top x users (outgoing).
- Top x users (connections).
- Top x IP's (total).
- Top x IP's (incomming).
- Top x IP's (outgoing).
- Top x IP's (connections).
- User/IP details.
- Search engine:
- Altavista search. (screenshot)
- Altavista web search.
- Altavista image search.
- Altavista video search.
- Altavista news search.
- Facebook search
- Flickr search
- Google search.
- Google web search.
- Google images search.
- Google video search.
- Google groups search.
- Google news search.
- Hotbot search.
- Live search.
- Live web search.
- Live images search.
- Live video search.
- Live news search.
- Msn search.
- Msn web search.
- Msn images search.
- Msn video search.
- Msn news search.
- Picsearch search.
- Yahoo search.
- Yahoo web search.
- Yahoo image search.
- Yahoo video search.
- Youtube search
- Request Methods.
- Webblocker. (screenshot 1) - (screenshot 2)
- URL Paths. (screenshot 1) - (screenshot 2)
- Virus Found.
- IPS.
- Header Content Type's.
- Body Content Type's.
SMTP Proxy:
HTTPS Proxy:
FWStatus:
- Admin actions
- IP's added to Blocked site list.
- User login/logout.
- User login rejected. (screenshot)
4. User/IP filter for your reports.
5. Time filter for all your reports.
6. Delete page to delete 'old' data from the database. (screenshot)
7. Capra will remember which files you already imported into the database.
8. Result caching of some of the query's to speed things up.
9. With 1 click u can do a reverse lookup of most of the ip addresses.
10. Mark your log messages. Marked log messages will show in red and you can decide not to delete them.
11. Preferences.
12. Maxmind GeoLite Country database. Shows Country <--> IP relations.
|
|
|