Second on ELSA; it will be included in the next version of security onion.
Doug Burks Security Onion already includes ossec, sguil, full packet capture, bro, and more.
Someone on list up there (Awesome Dave?) put together a SO / Splunk integration.
Thanks,
Liam
-----Original Message-----
From: listbounce (at) securityfocus (dot) com [email concealed] [mailto:listbounce (at) securityfocus (dot) com [email concealed]] On Behalf Of Kurt Buff
Sent: Wednesday, July 25, 2012 4:48 PM
To: security-basics (at) securityfocus (dot) com [email concealed]
Subject: Re: No Budget Static Log Analysis
On Wed, Jul 25, 2012 at 12:34 PM, Stephen Mullins <steve.mullins.work (at) gmail (dot) com [email concealed]> wrote:
> List,
>
<snip>
> LogStash
> GrayLog2
> log.io
> Log Parser (Windows)
>
> Has anyone tackled a similar problem in the past? If so, do you have
> any advice or recommendations? Of the "free" solutions researched the
Securing Apache Web Server with thawte Digital Certificate In this guide we examine the importance of Apache-SSL and who needs an SSL certificate. We look at how SSL works, how it benefits your company and how your customers can tell if a site is secure. You will find out how to test, purchase, install and use a thawte Digital Certificate on your Apache web server. Throughout, best practices for set-up are highlighted to help you ensure efficient ongoing management of your encryption keys and digital certificates.
Doug Burks Security Onion already includes ossec, sguil, full packet capture, bro, and more.
Someone on list up there (Awesome Dave?) put together a SO / Splunk integration.
Thanks,
Liam
-----Original Message-----
From: listbounce (at) securityfocus (dot) com [email concealed] [mailto:listbounce (at) securityfocus (dot) com [email concealed]] On Behalf Of Kurt Buff
Sent: Wednesday, July 25, 2012 4:48 PM
To: security-basics (at) securityfocus (dot) com [email concealed]
Subject: Re: No Budget Static Log Analysis
On Wed, Jul 25, 2012 at 12:34 PM, Stephen Mullins <steve.mullins.work (at) gmail (dot) com [email concealed]> wrote:
> List,
>
<snip>
> LogStash
> GrayLog2
> log.io
> Log Parser (Windows)
>
> Has anyone tackled a similar problem in the past? If so, do you have
> any advice or recommendations? Of the "free" solutions researched the
> first one I am inclined to try is LogStash.
>
> Thanks,
>
> Steve Mullins
Sorry - forgot to reply all:
http://code.google.com/p/enterprise-log-search-and-archive/
Kurt
------------------------------------------------------------------------
Securing Apache Web Server with thawte Digital Certificate In this guide we examine the importance of Apache-SSL and who needs an SSL certificate. We look at how SSL works, how it benefits your company and how your customers can tell if a site is secure. You will find out how to test, purchase, install and use a thawte Digital Certificate on your Apache web server. Throughout, best practices for set-up are highlighted to help you ensure efficient ongoing management of your encryption keys and digital certificates.
http://www.dinclinx.com/Redirect.aspx?36;4175;25;1371;0;5;946;e13b6be442
f727d1
------------------------------------------------------------------------
[ reply ]