Supported Applications

Lire can generate reports for a variety of dns, email, print, proxy, database, ftp and web servers as well as some firewalls. You can find the definitive list of supported log formats by running the command lr_log2report --help dlf-converters.

Database

Lire can generate reports from the log files of database servers:

For these applications, you will get reports about the number of queries, the top users, the most used databases and more.

Dialup

Lire can generate reports from the log files of Linux kernel 2.4.x isdnlog log files:

DNS

Lire can generate reports from the query log files of two DNS servers:

For these applications, you will get reports about the number of DNS requests by hour, the top DNS clients, the most requested names and more.

DNS Zone

Lire can generated reports from DNS server logs about DNS Zone transfers: AXFR's and the loading of zones, as logged by e.g BIND 8's named log.

Email

Six email servers are supported by Lire:

The email servers' reports will show you the number of deliveries and the volume of email delivered by day, the domains from which you receive or send the most emails, the relays most used, etc.

Firewall

Several packet filtering firewalls are supported by Lire:

The reports generated will include informations about the IP address with the largest volume of data denied, the denied TCP ports, etc.

FTP

Lire can generate reports for FTP servers that use the xferlog log format. Some of the FTP servers known to support that log format:

It also supports log files from Microsoft Internet Information Server™, which uses a variant of the W3C Extended Log Format.

The ftp superservice reports will include information such as the clients with the most transfers, the most requested files, the most active users, the amount of bytes transferred by day, etc.

Message Store

Lire can generate reports from log files from two message stores:

  • Netscape Messaging Server™.

  • Netscape Messaging Server Mail Multi Plexor

Print

Lire can generate reports for two print servers:

The reports generated will include information about the usage of the printers, statistics on the jobs and users.

Proxy

Lire supports three types of log files for proxy servers:

Syslog

Lire can generate overview reports about your syslog log files. It supports more than 8 different syslog log file formats.

WWW

Lire supports the three most common log formats for web servers: common log format (CLF), combined log format and the W3C extended log format. Most web servers are able to log in one of those formats. It has been verified that Lire is able to generate reports for the following web servers:

Reports for the www superservice will include information like the number of requests by day, requests by browser, attack detection, top referers, etc. It is Lire's most complete report.