LogAnalysis
[logs] LogLogic's hiring too Jun 26 2007 09:25PM
Anton Chuvakin (anton chuvakin org) (1 replies)
[logs] Microsoft is Hiring too Jun 27 2007 11:15PM
Eric Fitzgerald (Eric Fitzgerald microsoft com) (1 replies)
Re: [logs] Microsoft is Hiring too Jun 28 2007 03:09AM
Tom Le (dottom gmail com) (1 replies)
RE: [logs] Cross-Platform Log Analysis and Microsoft Jun 28 2007 08:06PM
Eric Fitzgerald (Eric Fitzgerald microsoft com) (1 replies)
RE: [logs] Cross-Platform Log Analysis and Microsoft Jun 29 2007 01:57AM
Marcus J. Ranum (mjr ranum com) (1 replies)
RE: [logs] Cross-Platform Log Analysis and Microsoft Jul 02 2007 04:00AM
David Corlette (dcorlette novell com) (2 replies)
Re: [logs] Cross-Platform Log Analysis and Microsoft Jul 02 2007 10:31PM
Mordechai T. Abzug (morty frakir org) (1 replies)
Re: [logs] Cross-Platform Log Analysis and Microsoft Jul 02 2007 11:05PM
Matt Cuttler (mcuttler bnl gov)
Mordechai T. Abzug wrote:
> On Mon, Jul 02, 2007 at 12:00:11AM -0400, David Corlette wrote:
>
>
>> And latter-day attempts to send
>> it over SSL or whatever are, to my mind, a band-aid solution.
>>

Agreed with both posters - that syslog, in general, can suck.

(But..) Separate that from an organization who wishes to take *that same
old syslog data*, and wrap the transport in a more "modern-day"
alternative such as TCP transport, and crypt it with secure sockets.
That's not putting "lipstick on a pig", or an attempt to glamorize the
Band-Aid(tm) "solution" -- it's just optional add-ons.

Often, the sysadmins are just following the Boss's (or the Auditor(s))
recommendations -- which are usually blanket statements such as "ALL
audit traffic MUST be encrypted".

> " while
> some people call old stuff "if it ain't broke, don't fix it."
>
That's true, but you'll find that some of the world's brightest people
usually don't work within that constraint :)

_______________________________________________
LogAnalysis mailing list
LogAnalysis (at) loganalysis (dot) org [email concealed]
http://www.loganalysis.org/mailman/listinfo/loganalysis

[ reply ]
RE: [logs] Cross-Platform Log Analysis and Microsoft Jul 02 2007 09:28PM
Marcus J. Ranum (mjr ranum com) (3 replies)
RE: [logs] Cross-Platform Log Analysis and Microsoft Jul 03 2007 01:34AM
Eric Fitzgerald (Eric Fitzgerald microsoft com) (3 replies)
[logs] event reporting, syslog, and security Jul 05 2007 09:46PM
Mordechai T. Abzug (morty frakir org)
Re: [logs] Cross-Platform Log Analysis and Microsoft Jul 03 2007 05:13AM
Russell Fulton (r fulton auckland ac nz) (1 replies)
Re: [logs] Cross-Platform Log Analysis and Microsoft Jul 03 2007 09:04AM
James Turnbull (james lovedthanlost net)
RE: [logs] Cross-Platform Log Analysis and Microsoft Jul 03 2007 12:37AM
David Corlette (dcorlette novell com) (1 replies)
RE: [logs] Cross-Platform Log Analysis and Microsoft Jul 03 2007 05:55AM
Eric Fitzgerald (Eric Fitzgerald microsoft com)
Re: [logs] Cross-Platform Log Analysis and Microsoft Jul 02 2007 10:25PM
Tom Perrine (tperrine scea com) (2 replies)
Re: [logs] Cross-Platform Log Analysis and Microsoft Jul 03 2007 08:27AM
Darren Reed (avalon coombs anu edu au)
Re: [logs] Cross-Platform Log Analysis and Microsoft Jul 03 2007 12:33AM
David Corlette (dcorlette novell com)
Re: [logs] Cross-Platform Log Analysis and Microsoft Jul 02 2007 10:16PM
Anton Chuvakin (anton chuvakin org)


 

Privacy Statement
Copyright 2010, SecurityFocus