Back to list
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Re: [logs] SIM solution - Objectives ? (Firewall logging)
May 27 2007 03:23PM
Paul Melson (pmelson gmail com)
On 5/25/07, Ron Gula <rgula (at) tenablesecurity (dot) com [email concealed]> wrote:
> If your firewall can log authorized traffic (some folks call these
> "ACCEPT" events) then you might have a great audit trail of all network
> connections that rivals what you can get out of netflow or direct
> network session monitoring.
[ more ]
Copyright 2010, SecurityFocus