Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
Security Basics
log analyser May 28 2009 11:25PM
sec nd-f com (7 replies)
Re: log analyser Jun 11 2009 03:38AM
TT-SEC (secfoc tigerteam net) (1 replies)
Re: log analyser Jun 12 2009 03:32PM
Richard Thomas (austindad gmail com) (1 replies)
Multi thread Jul 02 2009 05:42PM
Antão Miguel Chantre (chantre sisp cv) (1 replies)
Re: Multi thread Jul 08 2009 08:46PM
Suramya Tomar (security suramya com)
Re: log analyser Jun 02 2009 02:24AM
aditya mukadam (aditya mukadam gmail com) (3 replies)
RE: log analyser Jun 06 2009 02:50PM
Ramki B Ramakrishnan (bramkie gmail com)
RE: log analyser Jun 04 2009 05:27AM
Tariq Naik (Tariq_Naik symantec com)
RE: log analyser Jun 02 2009 06:03PM
Amardeep Singh (Amardeep_Singh symantec com)
RE: log analyser Jun 01 2009 07:30PM
John Lightfoot (jlightfoot gmail com)
Re: log analyser Jun 01 2009 05:22PM
Jared Curtis (jared w00ttech com)
Re: log analyser Jun 01 2009 04:58PM
giuseppe fuggiano gmail com
2009/5/29 <sec (at) nd-f (dot) com [email concealed]>:

> Hi,

>

> can someone of you recommend a good enterprise log analyser solution? i have to collect, corrolate and analyse about 1200 windows machines and 200 linux boxes. i want to do this in real-time, trigger actions (like email notification), make sense out of e.g. ten failed login attempts following the one successful etc.

I am currently deploying this nice appliance:

http://www.balabit.com/network-security/syslog-ng/log-server-appliance/

which also encrypt and signs logs, very good support, but you could want to configure a software by yourself. So,

http://www.splunk.com/

http://eiqnetworks.com/products/SecureVue/Data_Collection.shtml

http://www.gfi.com/eventsmanager (very good but no encryption)

Cheers,

--

Giuseppe

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.9 (GNU/Linux)

iEYEARECAAYFAkokCLwACgkQBBweuI38trwrfwCdH+dAqEpB4m/uXmiYI/ULID2E
r+sAoIYpzY5rNnH0NIKe+Q9fYSLDZWvF
=GkIM
-----END PGP SIGNATURE-----

[ reply ]
Re: log analyser Jun 01 2009 04:22PM
Abilash Praveen (abilash praveen gmail com)
RE: log analyser Jun 01 2009 04:05PM
Hindley Nick (Nick Hindley hfbp co uk) (1 replies)
RE: log analyser Jun 01 2009 05:17PM
Todd Neal (ToddNeal tnwinc com)







 

Privacy Statement
Copyright 2009, SecurityFocus