Virus.Org  IT Security News and Information Portal. We offer the latest IT security news, updates, product reviews, books, and articles for all you IT security professionals out there. Enter and get the best IT security information on the Internet.

 

. Welcome to the Virus.Org Mailing List Archive  
.
.


[Date Prev] [Date Next] [Thread Prev] [Thread Next] [Date Index] [Thread Index]


Re: log analyser
.

  • To: [EMAIL PROTECTED], security basics <[EMAIL PROTECTED]>
  • Subject: Re: log analyser
  • From: aditya mukadam <[EMAIL PROTECTED]>
  • Date: Tue, 2 Jun 2009 07:54:18 +0530
  • Dkim-signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=gamma; h=domainkey-signature:mime-version:received:in-reply-to:references :date:message-id:subject:from:to:content-type :content-transfer-encoding; bh=QeUpkt0Xl2lwMpGXP7CLMPsR1tSeFzg7EXJYbA24zPU=; b=We45PljdX0cosJSuCQ0gePdV90rcctpOoXTt2qDhx+eOUntSd4D0NxR1bmjRILqtek ygEMhPMeeXuWBAman4nZHgc0nSRIz/rtJDUMKyRPfTr2dLvxhPTwt/GxkMCIVYF0YYrz rYP/SU0uHN7kpWUmXNK9Of0q0HVmbo1oqDgjk=
  • In-reply-to: <[EMAIL PROTECTED]>
  • References: <[EMAIL PROTECTED]>
.
 
Andy,

There are quite lot of solutions out there based on your requirement
to collect, correlate, analyze etc . I would recommend you to take a
look at below:

1) Netforensics
2) LogRhythm
3) Juniper STRM
4) ArcSight

Feel free to let me know if any questions.

Thanks,
Aditya Govind Mukadam
CISSP,CEH, JNSA-Advanced Security, JNCIA-SSL,CQS-PIX,CQS-VPN
http://www.linkedin.com/in/adityamukadam


On Fri, May 29, 2009 at 4:55 AM,  <[EMAIL PROTECTED]> wrote:
> Hi,
>
> can someone of you recommend a good enterprise log analyser solution? i have to collect, corrolate and analyse about 1200 windows machines and 200 linux boxes. i want to do this in real-time, trigger actions (like email notification), make sense out of e.g. ten failed login attempts following the one successful etc.
>
> any hint would be helpful
> thanks
> andy
>
> ------------------------------------------------------------------------
> This list is sponsored by: InfoSec Institute
>
> Need to pass the CISSP? InfoSec Institute's CISSP Boot Camp in both Instructor-Led and Online formats is the most concentrated exam prep available. Comprehensive course materials and an expert instructor means you pass the exam. Gain a laser like insight into what is covered on the exam, with zero fluff!
>
> http://www.infosecinstitute.com/courses/cissp_bootcamp_training.html
> ------------------------------------------------------------------------
>
>

------------------------------------------------------------------------
This list is sponsored by: InfoSec Institute

Need to pass the CISSP? InfoSec Institute's CISSP Boot Camp in both Instructor-Led and Online formats is the most concentrated exam prep available. Comprehensive course materials and an expert instructor means you pass the exam. Gain a laser like insight into what is covered on the exam, with zero fluff!

http://www.infosecinstitute.com/courses/cissp_bootcamp_training.html
------------------------------------------------------------------------


 
.
.
 
Copyright (c) Virus.Org 1997-2006.
All Trademarks Acknowledged.
Please view our Terms and Conditions and our Privacy Policy.