Using a queried value to query... I think.

 
Thread Tools Search this Thread
Special Forums UNIX and Linux Applications Using a queried value to query... I think.
# 1  
Old 12-16-2009
MySQL Using a queried value to query... I think.

Hi,

One of our FTP servers is constantly under attack. I'm putting the output from the servers log file into a database. What I'm doing now is querying for anything hitting the server on port 21 in the last minute. Any single IP that has too high of a count within that minute is blocked. What I'd like to do is... In addition to gathered IP addresses hitting on port 21. Make sure that there are no hits from those IP addreses to the passive ports on our server. This would help eliminate false positives as much as I can.

The question is can I do this in a single statement?

The current statement is this:
Code:
"SELECT log_src_ip FROM traffic_log WHERE \
         (log_dst_ip = 'our.ftp.server.address' AND \
         log_dst_pt='21' AND \
         log_time > DATE_SUB(NOW(),INTERVAL $block_time second) \
         ORDER BY log_time ASC;"

Thanks,

MPH
Login or Register to Ask a Question

Previous Thread | Next Thread

9 More Discussions You Might Find Interesting

1. Shell Programming and Scripting

Shell Script to execute Oracle query taking input from a file to form query

Hi, I need to query Oracle database for 100 users. I have these 100 users in a file. I need a shell script which would read this User file (one user at a time) & query database. For instance: USER CITY --------- ---------- A CITY_A B CITY_B C ... (2 Replies)
Discussion started by: DevendraG
2 Replies

2. UNIX for Dummies Questions & Answers

Query

Hi, I have a script to remove null values from a file. Could any one explain how this is working? :confused: while read f do echo process $f gawk... (0 Replies)
Discussion started by: abhi_n123
0 Replies

3. Shell Programming and Scripting

want to query : YES or NO

hi i want to make script. where i want to query from the user yes or no exp: do you want to proceed : y for yes n for NO. how this is possible in unix (3 Replies)
Discussion started by: dodasajan
3 Replies

4. Shell Programming and Scripting

Query Oracle tables and return values to shell script that calls the query

Hi, I have a requirement as below which needs to be done viz UNIX shell script (1) I have to connect to an Oracle database (2) Exexute "SELECT field_status from table 1" query on one of the tables. (3) Based on the result that I get from point (2), I have to update another table in the... (6 Replies)
Discussion started by: balaeswari
6 Replies

5. Shell Programming and Scripting

add the output of a query to a variable to be used in another query

I would like to use the result of a query in another query. How do I redirect/add the output to another variable? $result = odbc_exec($connect, $query); while ($row = odbc_fetch_array($result)) { echo $row,"\n"; } odbc_close($connect); ?> This will output hostnames: host1... (0 Replies)
Discussion started by: hazno
0 Replies

6. UNIX for Dummies Questions & Answers

Need Help on query

I just started to learn unix - need help to write a script to query a logfile and produce the results that contains a specific word "alarm" for a period from X day to Y day. I really have no idea how to begin - :( please help... ____________________________________________________ #... (1 Reply)
Discussion started by: snipfer
1 Replies

7. Shell Programming and Scripting

query.....

hi friends i want to know details of `exec` exact use of this command ..... actually i went through the man page but i didn`t get the satisfactory ...conclusion.... thaks in advance.... (1 Reply)
Discussion started by: newson
1 Replies

8. Shell Programming and Scripting

query

I have converted data written on excel sheet in unix through shell & perl prg now the problem is I want that if starting columns of the xls sheet is Blank than when data is converted into unix then it should appear with this '|' sign. but it appearing like this: hfgg|tytt| but I want like... (2 Replies)
Discussion started by: akash
2 Replies

9. UNIX for Dummies Questions & Answers

query

hi, how can i do the following..... i have file containing followig a k 10000 b c 200000 d e 50 a j 40 how can i list all rows containg last value more than 1000? and how can i find number of blank rows in the file? THANKS! regards vivek (2 Replies)
Discussion started by: vivekshankar
2 Replies
Login or Register to Ask a Question
XFERLOG2DLF.IN(1)					  LogReport's Lire Documentation					 XFERLOG2DLF.IN(1)

NAME
xferlog2dlf - convert FTP logs in xferlog format to DLF format SYNOPSIS
xferlog2dlf DESCRIPTION
This script reads an FTP logfile in xferlog format. Most FTP servers use this format, among these are ProFTPD, WU-FTPD. EXAMPLES
To process a log as produced in the xferlog format: $ xferlog2dlf < ftp.log xferlog2dlf will be rarely used on its own, but is more likely called by lr_log2report: $ lr_log2report xferlog < /var/log/ftp.log SEE ALSO
xferlog(5) A list of FTP servers can be found at http://linuxmafia.com/pub/linux/security/ftp-daemons. AUTHOR
Egon Willighagen <egonw@logreport.org> VERSION
$Id: xferlog2dlf.in,v 1.11 2006/07/23 13:16:35 vanbaal Exp $ COPYRIGHT
Copyright (C) 2000-2001 Stichting LogReport Foundation LogReport@LogReport.org This program is free software; you can redistribute it and/or modify it under the terms of the GNU General Public License as published by the Free Software Foundation; either version 2 of the License, or (at your option) any later version. This program is distributed in the hope that it will be useful, but WITHOUT ANY WARRANTY; without even the implied warranty of MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU General Public License for more details. You should have received a copy of the GNU General Public License along with this program (see COPYING); if not, check with http://www.gnu.org/copyleft/gpl.html. Lire 2.1.1 2006-07-23 XFERLOG2DLF.IN(1)