>> Is it possible a user want the log because he/she wants to notice that
>> the system is being attacked?
>
> Yeah, but it doesn't seem very likely, because:
>
> 1. If the system is on the Internet, it's definitely being attacked, and
>
> 2. The attacks that connect to a port and then disconnect are not the
> ones you should be most worried about, and
>
> 3. The right way to detect attacks is through OS-level monitoring or
> firewall-level monitoring, and nothing we do in PG is going to come
> close to the same value.
Ok, that makes sense.
Best regards,
--
Tatsuo Ishii
SRA OSS, Inc. Japan
English: http://www.sraoss.co.jp/index_en.php
Japanese:http://www.sraoss.co.jp