- Monitoring firewall logs to detect spam bots. Devices such as the Sonicwall should allow you to send data to a syslog server, either syslogd or kiki on Windows. You can then run those logs through a program like Sawmill that will allow you to view SMTP traffic by IP address.
