logcheck
« Back to VersTracker
Description:
Mail anomalies in the system logfiles to the administrator
Type: Formula  |  Tracked Since: Dec 28, 2025
Links: Homepage  |  formulae.brew.sh
Category: Security
Tags: log-analysis security monitoring syslog admin
Install: brew install logcheck
About:
Logcheck is a utility that automates the analysis of system log files to identify and filter out noise, highlighting only significant security events and anomalies. It processes logs through a hierarchy of rules to deliver concise, actionable reports via email. This tool is essential for administrators to maintain situational awareness without being overwhelmed by log verbosity.
Key Features:
  • Automated log parsing and analysis
  • Rule-based filtering to reduce noise
  • Email delivery of security-relevant summaries
  • Supports various syslog daemons and log formats
Use Cases:
  • Daily security audit of server logs for anomalies
  • Automated alerting for failed login attempts or root access
  • Compliance monitoring for system integrity
Alternatives:
  • fail2ban – Fail2ban actively blocks malicious IPs, while Logcheck is a passive reporting tool for log analysis.
  • logwatch – Logwatch provides daily summaries of system activity, whereas Logcheck focuses more specifically on security anomalies and rule-based filtering.
Version History
Detected Version Rev Change Commit