fwanalog is a shell script that parses and summarizes firewall logfiles. It understands logs from ipf (xBSD, Solaris), OpenBSD 3.x pf, Linux 2.2 ipchains, Linux 2.4 iptables, and a few types of routers and firewalls (Cisco, Checkpoint FW-1, and Watchguard). The excellent log analysis program Analog is used to create the reports.
Lire is a pluggable log analyzer. It has analyzers for over 25 log file formats, ranging from Apache WWW log files to iptables firewall logs and CUPS printing logs. Reports are generated in 9 different output formats, ranging from Excel 95 to PDF to HTML, optionally with included graphs.
YAC (Yet Another Counter) is a Web counter and logger written in Perl. It counts only "real" visits, meaning that it increases the counter only if there was no request from the same IP within one hour, but logs every page hit. It has 3 output modes (graphic, text, quiet) and a configurable minimum number of digits displayed. To avoid corrupt data it uses flock() for all file operations.
Cisco IP Accounting Fetcher is a set of Perl scripts that allows you to fetch IP accounting data from Cisco routers. It is capable of fetching this information from multiple routers. It summarizes this information on a daily and monthly basis. It optionally generates HTML output with CSS support, and it is able to ignore specific traffic.
scanlog reads logfiles generated by CommuniGate Pro and generates parsed output in either plain text or HTML. It is no longer supported by the author, and does not work for recent versions of CGPro. If you are interested in taking over maintenance of the project, please contact the author.
qmailmrtg7 utilizes qmail and tcpserver/multilog's extensive logging capabilities to create mrtg graphs. It efficiently processes the logs (large sites with historical logs of over 100MB can be processed in a few seconds). For qmail it graphs remote/local delivery concurrency, queue size, messages process, bytes transferred, and success/failure delivery status. For tcpserver services like SMTP and POP, it graphs total connections and concurrency. For djbdns, it can graph dnscache and tinydns activity. For ClamAV, it graphs viruses found. For spamassassin it graphs spam emails found.