Otherwise you might never know WTF is going on. Hell, sometimes I don't know WTF is going on even when I do GREP my logs.
Case in point. A routine GREP of the SYSLOG files has turned up a rather interesting trend lately. It seems that my Linux firewall has been receiving an unusual amount of connection attempts to port 1214 over the last week or so.
Now, I don't know WTF port 1214 is (other than what is listed [link|http://www.iana.org/assignments/port-numbers|here]), but I'm keeping an eye on it now and if I see any weirdness on the firewall, at least I won't be completely blind-sided.
BTW, anybody know WTF could be going on with the above mentioned port connection attempts?